Skip to content

ci: Bump anchore/sbom-action from 0.24.0 to 0.24.2 - #1099

Merged
WimvandenHeijkant merged 1 commit into
mainfrom
dependabot/github_actions/anchore/sbom-action-0.24.2
Sep 8, 2026
Merged

ci: Bump anchore/sbom-action from 0.24.0 to 0.24.2#1099
WimvandenHeijkant merged 1 commit into
mainfrom
dependabot/github_actions/anchore/sbom-action-0.24.2

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Sep 3, 2026

Copy link
Copy Markdown
Contributor

Bumps anchore/sbom-action from 0.24.0 to 0.24.2.

Release notes

Sourced from anchore/sbom-action's releases.

v0.24.2

Added Features

Additional Changes

(Full Changelog)

Commits
  • 3ad7283 ops: update write permissions for release (#723)
  • 31f5287 chore(deps-dev): bump eslint from 10.8.1 to 10.9.0 (#724)
  • aa80c8c chore(deps): update Syft to latest release (#722)
  • 74b54e9 chore(deps): bump lodash from 4.17.23 to 4.18.1 (#623)
  • 6b92ff5 chore(deps-dev): bump tsx from 4.23.11 to 4.23.12 (#721)
  • 4f8983b chore(deps-dev): bump typescript-eslint from 8.65.0 to 8.67.0 (#719)
  • 10f27f4 chore(deps-dev): bump eslint from 10.5.0 to 10.8.1 (#720)
  • 249403a chore(deps-dev): bump @​types/node from 26.1.0 to 26.2.0 (#718)
  • cbf8daa chore(deps): bump anchore/workflows/.github/workflows/check-gate.yaml (#693)
  • 6afc793 fix: pin syft install.sh to the release tag being installed (#716)
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Sep 3, 2026
@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Sep 3, 2026
@WimvandenHeijkant

Copy link
Copy Markdown
Contributor

@dependabot rebase

Bumps [anchore/sbom-action](https://github.com/anchore/sbom-action) from 0.24.0 to 0.24.2.
- [Release notes](https://github.com/anchore/sbom-action/releases)
- [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md)
- [Commits](anchore/sbom-action@e22c389...3ad7283)

---
updated-dependencies:
- dependency-name: anchore/sbom-action
  dependency-version: 0.24.2
  dependency-type: direct:production
  update-type: version-update:semver-patch
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot
dependabot Bot force-pushed the dependabot/github_actions/anchore/sbom-action-0.24.2 branch from 7e5c75e to 35d362e Compare September 8, 2026 11:36

@WimvandenHeijkant WimvandenHeijkant left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

CI green after rebase onto the npm-audit fix (#1165). Approving as part of the dependabot backlog clear-out.

@WimvandenHeijkant
WimvandenHeijkant merged commit 37a21e9 into main Sep 8, 2026
32 checks passed
@WimvandenHeijkant
WimvandenHeijkant deleted the dependabot/github_actions/anchore/sbom-action-0.24.2 branch September 8, 2026 11:50
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant