build(deps): bump the devops group across 1 directory with 3 updates (#9275)
Bumps the devops group with 3 updates in the / directory: [docker/setup-buildx-action](https://github.com/docker/setup-buildx-action), [docker/build-push-action](https://github.com/docker/build-push-action) and [docker/scout-action](https://github.com/docker/scout-action). Updates `docker/setup-buildx-action` from 3.8.0 to 3.9.0 - [Release notes](https://github.com/docker/setup-buildx-action/releases) - [Commits](https://github.com/docker/setup-buildx-action/compare/v3.8.0...v3.9.0) Updates `docker/build-push-action` from 6.13.0 to 6.14.0 - [Release notes](https://github.com/docker/build-push-action/releases) - [Commits](https://github.com/docker/build-push-action/compare/v6.13.0...v6.14.0) Updates `docker/scout-action` from 1.16.1 to 1.16.3 - [Release notes](https://github.com/docker/scout-action/releases) - [Commits](https://github.com/docker/scout-action/compare/v1.16.1...v1.16.3) --- updated-dependencies: - dependency-name: docker/setup-buildx-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: devops - dependency-name: docker/build-push-action dependency-type: direct:production update-type: version-update:semver-minor dependency-group: devops - dependency-name: docker/scout-action dependency-type: direct:production update-type: version-update:semver-patch dependency-group: devops ... Signed-off-by: dependabot[bot] <support@github.com> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
This commit is contained in:
parent
14459e7cee
commit
0b8bef37ac
|
@ -147,7 +147,7 @@ jobs:
|
|||
# Setup Docker Buildx to use Docker Build Cloud
|
||||
- name: Set up Docker Buildx
|
||||
id: buildx
|
||||
uses: docker/setup-buildx-action@v3.8.0
|
||||
uses: docker/setup-buildx-action@v3.9.0
|
||||
with:
|
||||
version: "lab:latest"
|
||||
driver: cloud
|
||||
|
@ -156,7 +156,7 @@ jobs:
|
|||
# Build and push image to Google Artifact Registry, and possibly DockerHub
|
||||
- name: Build & push
|
||||
id: docker_build
|
||||
uses: docker/build-push-action@v6.13.0
|
||||
uses: docker/build-push-action@v6.14.0
|
||||
with:
|
||||
target: ${{ inputs.dockerfile_target }}
|
||||
context: .
|
||||
|
@ -187,7 +187,7 @@ jobs:
|
|||
# - `dev` for a pull request event
|
||||
- name: Docker Scout
|
||||
id: docker-scout
|
||||
uses: docker/scout-action@v1.16.1
|
||||
uses: docker/scout-action@v1.16.3
|
||||
# We only run Docker Scout on the `runtime` target, as the other targets are not meant to be released
|
||||
# and are commonly used for testing, and thus are ephemeral.
|
||||
# TODO: Remove the `contains` check once we have a better way to determine if just new vulnerabilities are present.
|
||||
|
|
Loading…
Reference in New Issue