ci(deps): bump amannn/action-semantic-pull-request from 5.5.3 to 6.1.1#99
Conversation
Bumps [amannn/action-semantic-pull-request](https://github.com/amannn/action-semantic-pull-request) from 5.5.3 to 6.1.1. - [Release notes](https://github.com/amannn/action-semantic-pull-request/releases) - [Changelog](https://github.com/amannn/action-semantic-pull-request/blob/main/CHANGELOG.md) - [Commits](amannn/action-semantic-pull-request@0723387...48f2562) --- updated-dependencies: - dependency-name: amannn/action-semantic-pull-request dependency-version: 6.1.1 dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <support@github.com>
LabelsThe following labels could not be found: Please fix the above issues or remove invalid values from |
- urllib3 2.6.3 β 2.7.0 (CVE-2026-44431, CVE-2026-44432) - idna 3.11 β 3.18 (CVE-2026-45409) - pip 26.0.1 β 26.1.2 (CVE-2026-6357, CVE-2026-3219) - actions/checkout SHA β v6.0.3 (closes dependabot #98) - amannn/action-semantic-pull-request SHA β v6.1.1 (closes dependabot #99) Signed-off-by: PythonWoods <gianluca.catalano@gmail.com>
|
Superseded by commit 982f81c on |
|
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting If you change your mind, just re-open this PR and I'll resolve any conflicts on it. |
* ci: run required Audit checks on every pull request Signed-off-by: PythonWoods <gianluca.catalano@gmail.com> * docs(changelog): record CI gate hardening for 0.10.4 Signed-off-by: PythonWoods <gianluca.catalano@gmail.com> * release: bump version to 0.10.4 Signed-off-by: PythonWoods <gianluca.catalano@gmail.com> * fix(deps): patch urllib3, idna, pip and bump GHA actions - urllib3 2.6.3 β 2.7.0 (CVE-2026-44431, CVE-2026-44432) - idna 3.11 β 3.18 (CVE-2026-45409) - pip 26.0.1 β 26.1.2 (CVE-2026-6357, CVE-2026-3219) - actions/checkout SHA β v6.0.3 (closes dependabot #98) - amannn/action-semantic-pull-request SHA β v6.1.1 (closes dependabot #99) Signed-off-by: PythonWoods <gianluca.catalano@gmail.com> * style(readme): fix badge centering β remove blank line inside <p align=center> Signed-off-by: PythonWoods <gianluca.catalano@gmail.com> --------- Signed-off-by: PythonWoods <gianluca.catalano@gmail.com>
Bumps amannn/action-semantic-pull-request from 5.5.3 to 6.1.1.
Release notes
Sourced from amannn/action-semantic-pull-request's releases.
Changelog
Sourced from amannn/action-semantic-pull-request's changelog.
... (truncated)
Commits
48f2562chore: Release 6.1.1 [skip ci]800da4cfix: ParseheaderPatternCorrespondenceproperly (#295)677b895test: Fix broken test24e6f01ci: Fix permissions for tagger7f33ba7chore: Release 6.1.0 [skip ci]afa4edbfix: Remove trailing whitespace from "unknown release type" error message (#291)a30288bfeat: Support providing regexps for types (#292)a46a7c8build: Move Vitest todevDependencies(#290)fdd4d3dchore: Release 6.0.1 [skip ci]58e4ab4fix: Actually execute action (#289)Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)