Skip to content

build(deps): bump anchore/scan-action from 6.5.1 to 7.4.0#5

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/anchore/scan-action-7
Open

build(deps): bump anchore/scan-action from 6.5.1 to 7.4.0#5
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/anchore/scan-action-7

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 11, 2026

Copy link
Copy Markdown

Bumps anchore/scan-action from 6.5.1 to 7.4.0.

Release notes

Sourced from anchore/scan-action's releases.

v7.4.0

⬆️ Dependencies

v7.3.2

⬆️ Dependencies

v7.3.1

⬆️ Dependencies

v7.3.0

New in scan-action v7.3.0

⬆️ Dependencies

v7.2.3

New in scan-action v7.2.3

... (truncated)

Commits
  • e116508 chore: bump fast-xml-parser from 5.5.6 to 5.5.7 + setup-node (#631)
  • 382a23a chore(deps): update Grype to v0.110.0 (#618)
  • 2898213 chore: update to node 24 (#629)
  • 4e1eb5b chore: update to modules and bump all deps (required for new @​actions librari...
  • 8ed60d1 chore(deps): bump actions/setup-node from 6.2.0 to 6.3.0 (#617)
  • 5a271d2 chore(deps-dev): bump lint-staged from 16.3.1 to 16.3.2 (#619)
  • 6d37af2 chore(deps-dev): bump jest from 30.2.0 to 30.3.0 (#625)
  • 50a8160 chore(deps-dev): bump tar from 7.5.10 to 7.5.11 (#620)
  • daeb723 chore(deps): bump undici from 6.23.0 to 6.24.1 (#622)
  • 6471a7e chore(deps): bump fast-xml-parser from 5.3.6 to 5.5.6 (#626)
  • Additional commits viewable in compare view

@dependabot @github

dependabot Bot commented on behalf of github Jun 11, 2026

Copy link
Copy Markdown
Author

Labels

The following labels could not be found: ci, dependencies. Please create them before Dependabot can add them to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

Bumps [anchore/scan-action](https://github.com/anchore/scan-action) from 6.5.1 to 7.4.0.
- [Release notes](https://github.com/anchore/scan-action/releases)
- [Changelog](https://github.com/anchore/scan-action/blob/main/RELEASE.md)
- [Commits](anchore/scan-action@1638637...e116508)

---
updated-dependencies:
- dependency-name: anchore/scan-action
  dependency-version: '7'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot changed the title build(deps): bump anchore/scan-action from 6 to 7 build(deps): bump anchore/scan-action from 6.5.1 to 7.4.0 Jun 12, 2026
@dependabot dependabot Bot force-pushed the dependabot/github_actions/anchore/scan-action-7 branch from 000c624 to 736df1c Compare June 12, 2026 00:37
@dependabot dependabot Bot requested a review from radicalkjax as a code owner June 12, 2026 00:37
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants