Skip to content

Update renovatebot/github-action action to v46.2.2 - #132

Open
csi-components-e2e wants to merge 1 commit into
mainfrom
renovate/all-non-major-dependencies
Open

Update renovatebot/github-action action to v46.2.2#132
csi-components-e2e wants to merge 1 commit into
mainfrom
renovate/all-non-major-dependencies

Conversation

@csi-components-e2e

Copy link
Copy Markdown
Collaborator

This PR contains the following updates:

Package Type Update Change
renovatebot/github-action action patch v46.2.1v46.2.2

Release Notes

renovatebot/github-action (renovatebot/github-action)

v46.2.2

Compare Source

Documentation
  • update references to renovatebot/github-action to v46.2.1 (7cb7826)
Miscellaneous Chores
  • deps: update dependency globals to v17.9.0 (fe8cd8f)
  • deps: update dependency lint-staged to v17.3.0 (0170d05)
  • deps: update dependency npm-run-all2 to v9.0.3 (28cc32f)
  • deps: update node.js to v24.19.0 (7871c30)
  • deps: update pnpm/action-setup action to v6.0.10 (d50b9ec)
Build System
  • deps: lock file maintenance (aff7566)
Continuous Integration
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.10.0 (06d3a61)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.0 (01f82e1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.1 (cbdd6e6)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.3 (b198ad1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.4 (08eadc2)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.6 (90ab0cf)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.11.8 (7450504)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.12.0 (7e359f7)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.13.1 (8a0db28)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.13.2 (aaca99e)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.13.3 (a0789b3)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.1 (3c34056)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.10 (e7b39a3)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.12 (043e499)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.3 (#​1069) (c2d39c0)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.5 (ed777cd)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.7 (670a1df)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.14.8 (b057f09)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.16.1 (7b73ff6)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.17.0 (28c55b1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.17.1 (216aee1)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.7.4 (9d9a18a)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.8.0 (a339330)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.8.1 (f82ef19)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.9.2 (2a6f771)

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate CLI.

| datasource  | package                   | from    | to      |
| ----------- | ------------------------- | ------- | ------- |
| github-tags | renovatebot/github-action | v46.2.1 | v46.2.2 |
@csi-components-e2e csi-components-e2e added the dependencies Pull requests that update a dependency file label Aug 10, 2026
@csi-components-e2e
csi-components-e2e enabled auto-merge (squash) August 10, 2026 01:55
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:60b8dbc96d94d5ff2167c2be4f32b8d13b98e7f7-v8.6.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:60b8dbc96d94d5ff21- │  amazon  │        0        │    -    │
│ 67c2be4f32b8d13b98e7f7-v8.6.0-eksbuild.4 (amazon 2023.12.20260803 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.54.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:60b8dbc96d94d5ff2167c2be4f32b8d13b98e7f7-v4.12.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:60b8dbc96d94d5ff2167c- │  amazon  │        0        │    -    │
│ 2be4f32b8d13b98e7f7-v4.12.0-eksbuild.4 (amazon 2023.12.20260803 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.54.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:60b8dbc96d94d5ff2167c2be4f32b8d13b98e7f7-v6.3.0-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:60b8dbc96d94d5ff21- │  amazon  │        0        │    -    │
│ 67c2be4f32b8d13b98e7f7-v6.3.0-eksbuild.3 (amazon 2023.12.20260803 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.54.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:60b8dbc96d94d5ff2167c2be4f32b8d13b98e7f7-v2.2.1-eksbuild.2

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:60b8dbc96d94d5ff2167c2- │  amazon  │        0        │    -    │
│ be4f32b8d13b98e7f7-v2.2.1-eksbuild.2 (amazon 2023.12.20260803 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.54.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:60b8dbc96d94d5ff2167c2be4f32b8d13b98e7f7-v2.17.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:60b8dbc9- │  amazon  │        0        │    -    │
│ 6d94d5ff2167c2be4f32b8d13b98e7f7-v2.17.0-eksbuild.4 (amazon 2023.12.20260803     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:60b8dbc96d94d5ff2167c2be4f32b8d13b98e7f7-v2.19.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:60b8dbc96d94d5ff2167- │  amazon  │        0        │    -    │
│ c2be4f32b8d13b98e7f7-v2.19.0-eksbuild.4 (amazon 2023.12.20260803 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:60b8dbc96d94d5ff2167c2be4f32b8d13b98e7f7-v8.6.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:60b8dbc96d94d5- │  amazon  │        0        │    -    │
│ ff2167c2be4f32b8d13b98e7f7-v8.6.0-eksbuild.4 (amazon 2023.12.20260803 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.54.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:60b8dbc96d94d5ff2167c2be4f32b8d13b98e7f7-v0.9.5-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:60b8dbc96d- │  amazon  │        0        │    -    │
│ 94d5ff2167c2be4f32b8d13b98e7f7-v0.9.5-eksbuild.4 (amazon 2023.12.20260803        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant