fix(deps): update non-major-updates
This commit is contained in:
6
.github/workflows/codeql.yml
vendored
6
.github/workflows/codeql.yml
vendored
@@ -52,7 +52,7 @@ jobs:
|
|||||||
run: bash scripts/ci/check-codeql-parity.sh
|
run: bash scripts/ci/check-codeql-parity.sh
|
||||||
|
|
||||||
- name: Initialize CodeQL
|
- name: Initialize CodeQL
|
||||||
uses: github/codeql-action/init@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4
|
uses: github/codeql-action/init@38697555549f1db7851b81482ff19f1fa5c4fedc # v4
|
||||||
with:
|
with:
|
||||||
languages: ${{ matrix.language }}
|
languages: ${{ matrix.language }}
|
||||||
queries: security-and-quality
|
queries: security-and-quality
|
||||||
@@ -92,10 +92,10 @@ jobs:
|
|||||||
run: mkdir -p sarif-results
|
run: mkdir -p sarif-results
|
||||||
|
|
||||||
- name: Autobuild
|
- name: Autobuild
|
||||||
uses: github/codeql-action/autobuild@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4
|
uses: github/codeql-action/autobuild@38697555549f1db7851b81482ff19f1fa5c4fedc # v4
|
||||||
|
|
||||||
- name: Perform CodeQL Analysis
|
- name: Perform CodeQL Analysis
|
||||||
uses: github/codeql-action/analyze@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4
|
uses: github/codeql-action/analyze@38697555549f1db7851b81482ff19f1fa5c4fedc # v4
|
||||||
with:
|
with:
|
||||||
category: "/language:${{ matrix.language }}"
|
category: "/language:${{ matrix.language }}"
|
||||||
output: sarif-results/${{ matrix.language }}
|
output: sarif-results/${{ matrix.language }}
|
||||||
|
|||||||
12
.github/workflows/docker-build.yml
vendored
12
.github/workflows/docker-build.yml
vendored
@@ -565,7 +565,7 @@ jobs:
|
|||||||
|
|
||||||
- name: Upload Trivy results
|
- name: Upload Trivy results
|
||||||
if: env.TRIGGER_EVENT != 'pull_request' && steps.skip.outputs.skip_build != 'true' && steps.trivy-check.outputs.exists == 'true'
|
if: env.TRIGGER_EVENT != 'pull_request' && steps.skip.outputs.skip_build != 'true' && steps.trivy-check.outputs.exists == 'true'
|
||||||
uses: github/codeql-action/upload-sarif@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4.34.0
|
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4.34.1
|
||||||
with:
|
with:
|
||||||
sarif_file: 'trivy-results.sarif'
|
sarif_file: 'trivy-results.sarif'
|
||||||
category: '.github/workflows/docker-build.yml:build-and-push'
|
category: '.github/workflows/docker-build.yml:build-and-push'
|
||||||
@@ -574,7 +574,7 @@ jobs:
|
|||||||
# Generate SBOM (Software Bill of Materials) for supply chain security
|
# Generate SBOM (Software Bill of Materials) for supply chain security
|
||||||
# Only for production builds (main/development) - feature branches use downstream supply-chain-pr.yml
|
# Only for production builds (main/development) - feature branches use downstream supply-chain-pr.yml
|
||||||
- name: Generate SBOM
|
- name: Generate SBOM
|
||||||
uses: anchore/sbom-action@57aae528053a48a3f6235f2d9461b05fbcb7366d # v0.23.1
|
uses: anchore/sbom-action@e22c389904149dbc22b58101806040fa8d37a610 # v0.24.0
|
||||||
if: env.TRIGGER_EVENT != 'pull_request' && steps.skip.outputs.skip_build != 'true' && steps.skip.outputs.is_feature_push != 'true'
|
if: env.TRIGGER_EVENT != 'pull_request' && steps.skip.outputs.skip_build != 'true' && steps.skip.outputs.is_feature_push != 'true'
|
||||||
with:
|
with:
|
||||||
image: ${{ env.GHCR_REGISTRY }}/${{ env.IMAGE_NAME }}@${{ steps.build-and-push.outputs.digest }}
|
image: ${{ env.GHCR_REGISTRY }}/${{ env.IMAGE_NAME }}@${{ steps.build-and-push.outputs.digest }}
|
||||||
@@ -724,14 +724,14 @@ jobs:
|
|||||||
|
|
||||||
- name: Upload Trivy scan results
|
- name: Upload Trivy scan results
|
||||||
if: always() && steps.trivy-pr-check.outputs.exists == 'true'
|
if: always() && steps.trivy-pr-check.outputs.exists == 'true'
|
||||||
uses: github/codeql-action/upload-sarif@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4.34.0
|
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4.34.1
|
||||||
with:
|
with:
|
||||||
sarif_file: 'trivy-pr-results.sarif'
|
sarif_file: 'trivy-pr-results.sarif'
|
||||||
category: 'docker-pr-image'
|
category: 'docker-pr-image'
|
||||||
|
|
||||||
- name: Upload Trivy compatibility results (docker-build category)
|
- name: Upload Trivy compatibility results (docker-build category)
|
||||||
if: always() && steps.trivy-pr-check.outputs.exists == 'true'
|
if: always() && steps.trivy-pr-check.outputs.exists == 'true'
|
||||||
uses: github/codeql-action/upload-sarif@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4.34.0
|
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4.34.1
|
||||||
with:
|
with:
|
||||||
sarif_file: 'trivy-pr-results.sarif'
|
sarif_file: 'trivy-pr-results.sarif'
|
||||||
category: '.github/workflows/docker-build.yml:build-and-push'
|
category: '.github/workflows/docker-build.yml:build-and-push'
|
||||||
@@ -739,7 +739,7 @@ jobs:
|
|||||||
|
|
||||||
- name: Upload Trivy compatibility results (docker-publish alias)
|
- name: Upload Trivy compatibility results (docker-publish alias)
|
||||||
if: always() && steps.trivy-pr-check.outputs.exists == 'true'
|
if: always() && steps.trivy-pr-check.outputs.exists == 'true'
|
||||||
uses: github/codeql-action/upload-sarif@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4.34.0
|
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4.34.1
|
||||||
with:
|
with:
|
||||||
sarif_file: 'trivy-pr-results.sarif'
|
sarif_file: 'trivy-pr-results.sarif'
|
||||||
category: '.github/workflows/docker-publish.yml:build-and-push'
|
category: '.github/workflows/docker-publish.yml:build-and-push'
|
||||||
@@ -747,7 +747,7 @@ jobs:
|
|||||||
|
|
||||||
- name: Upload Trivy compatibility results (nightly alias)
|
- name: Upload Trivy compatibility results (nightly alias)
|
||||||
if: always() && steps.trivy-pr-check.outputs.exists == 'true'
|
if: always() && steps.trivy-pr-check.outputs.exists == 'true'
|
||||||
uses: github/codeql-action/upload-sarif@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4.34.0
|
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4.34.1
|
||||||
with:
|
with:
|
||||||
sarif_file: 'trivy-pr-results.sarif'
|
sarif_file: 'trivy-pr-results.sarif'
|
||||||
category: 'trivy-nightly'
|
category: 'trivy-nightly'
|
||||||
|
|||||||
4
.github/workflows/nightly-build.yml
vendored
4
.github/workflows/nightly-build.yml
vendored
@@ -263,7 +263,7 @@ jobs:
|
|||||||
- name: Generate SBOM
|
- name: Generate SBOM
|
||||||
id: sbom_primary
|
id: sbom_primary
|
||||||
continue-on-error: true
|
continue-on-error: true
|
||||||
uses: anchore/sbom-action@57aae528053a48a3f6235f2d9461b05fbcb7366d # v0.23.1
|
uses: anchore/sbom-action@e22c389904149dbc22b58101806040fa8d37a610 # v0.24.0
|
||||||
with:
|
with:
|
||||||
image: ${{ env.GHCR_REGISTRY }}/${{ env.IMAGE_NAME }}@${{ steps.resolve_digest.outputs.digest }}
|
image: ${{ env.GHCR_REGISTRY }}/${{ env.IMAGE_NAME }}@${{ steps.resolve_digest.outputs.digest }}
|
||||||
format: cyclonedx-json
|
format: cyclonedx-json
|
||||||
@@ -451,7 +451,7 @@ jobs:
|
|||||||
trivyignores: '.trivyignore'
|
trivyignores: '.trivyignore'
|
||||||
|
|
||||||
- name: Upload Trivy results
|
- name: Upload Trivy results
|
||||||
uses: github/codeql-action/upload-sarif@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4.34.0
|
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4.34.1
|
||||||
with:
|
with:
|
||||||
sarif_file: 'trivy-nightly.sarif'
|
sarif_file: 'trivy-nightly.sarif'
|
||||||
category: 'trivy-nightly'
|
category: 'trivy-nightly'
|
||||||
|
|||||||
2
.github/workflows/security-pr.yml
vendored
2
.github/workflows/security-pr.yml
vendored
@@ -385,7 +385,7 @@ jobs:
|
|||||||
- name: Upload Trivy SARIF to GitHub Security
|
- name: Upload Trivy SARIF to GitHub Security
|
||||||
if: always() && steps.trivy-sarif-check.outputs.exists == 'true'
|
if: always() && steps.trivy-sarif-check.outputs.exists == 'true'
|
||||||
# github/codeql-action v4
|
# github/codeql-action v4
|
||||||
uses: github/codeql-action/upload-sarif@095e0fe505bb5ab6198675d021352632c2c69a46
|
uses: github/codeql-action/upload-sarif@05b1a5d28f8763fd11e77388fe57846f1ba8e766
|
||||||
with:
|
with:
|
||||||
sarif_file: 'trivy-binary-results.sarif'
|
sarif_file: 'trivy-binary-results.sarif'
|
||||||
category: ${{ steps.pr-info.outputs.is_push == 'true' && format('security-scan-{0}', github.event_name == 'workflow_run' && github.event.workflow_run.head_branch || github.ref_name) || format('security-scan-pr-{0}', steps.pr-info.outputs.pr_number) }}
|
category: ${{ steps.pr-info.outputs.is_push == 'true' && format('security-scan-{0}', github.event_name == 'workflow_run' && github.event.workflow_run.head_branch || github.ref_name) || format('security-scan-pr-{0}', steps.pr-info.outputs.pr_number) }}
|
||||||
|
|||||||
@@ -113,7 +113,7 @@ jobs:
|
|||||||
version: 'v0.69.3'
|
version: 'v0.69.3'
|
||||||
|
|
||||||
- name: Upload Trivy results to GitHub Security
|
- name: Upload Trivy results to GitHub Security
|
||||||
uses: github/codeql-action/upload-sarif@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4.34.0
|
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4.34.1
|
||||||
with:
|
with:
|
||||||
sarif_file: 'trivy-weekly-results.sarif'
|
sarif_file: 'trivy-weekly-results.sarif'
|
||||||
|
|
||||||
|
|||||||
4
.github/workflows/supply-chain-pr.yml
vendored
4
.github/workflows/supply-chain-pr.yml
vendored
@@ -266,7 +266,7 @@ jobs:
|
|||||||
# Generate SBOM using official Anchore action (auto-updated by Renovate)
|
# Generate SBOM using official Anchore action (auto-updated by Renovate)
|
||||||
- name: Generate SBOM
|
- name: Generate SBOM
|
||||||
if: steps.set-target.outputs.image_name != ''
|
if: steps.set-target.outputs.image_name != ''
|
||||||
uses: anchore/sbom-action@57aae528053a48a3f6235f2d9461b05fbcb7366d # v0.23.1
|
uses: anchore/sbom-action@e22c389904149dbc22b58101806040fa8d37a610 # v0.24.0
|
||||||
id: sbom
|
id: sbom
|
||||||
with:
|
with:
|
||||||
image: ${{ steps.set-target.outputs.image_name }}
|
image: ${{ steps.set-target.outputs.image_name }}
|
||||||
@@ -362,7 +362,7 @@ jobs:
|
|||||||
|
|
||||||
- name: Upload SARIF to GitHub Security
|
- name: Upload SARIF to GitHub Security
|
||||||
if: steps.check-artifact.outputs.artifact_found == 'true'
|
if: steps.check-artifact.outputs.artifact_found == 'true'
|
||||||
uses: github/codeql-action/upload-sarif@c6f931105cb2c34c8f901cc885ba1e2e259cf745 # v4
|
uses: github/codeql-action/upload-sarif@38697555549f1db7851b81482ff19f1fa5c4fedc # v4
|
||||||
continue-on-error: true
|
continue-on-error: true
|
||||||
with:
|
with:
|
||||||
sarif_file: grype-results.sarif
|
sarif_file: grype-results.sarif
|
||||||
|
|||||||
2
.github/workflows/supply-chain-verify.yml
vendored
2
.github/workflows/supply-chain-verify.yml
vendored
@@ -119,7 +119,7 @@ jobs:
|
|||||||
# Generate SBOM using official Anchore action (auto-updated by Renovate)
|
# Generate SBOM using official Anchore action (auto-updated by Renovate)
|
||||||
- name: Generate and Verify SBOM
|
- name: Generate and Verify SBOM
|
||||||
if: steps.image-check.outputs.exists == 'true'
|
if: steps.image-check.outputs.exists == 'true'
|
||||||
uses: anchore/sbom-action@57aae528053a48a3f6235f2d9461b05fbcb7366d # v0.23.1
|
uses: anchore/sbom-action@e22c389904149dbc22b58101806040fa8d37a610 # v0.24.0
|
||||||
with:
|
with:
|
||||||
image: ghcr.io/${{ github.repository_owner }}/charon:${{ steps.tag.outputs.tag }}
|
image: ghcr.io/${{ github.repository_owner }}/charon:${{ steps.tag.outputs.tag }}
|
||||||
format: cyclonedx-json
|
format: cyclonedx-json
|
||||||
|
|||||||
8
frontend/package-lock.json
generated
8
frontend/package-lock.json
generated
@@ -19,7 +19,7 @@
|
|||||||
"class-variance-authority": "^0.7.1",
|
"class-variance-authority": "^0.7.1",
|
||||||
"clsx": "^2.1.1",
|
"clsx": "^2.1.1",
|
||||||
"date-fns": "^4.1.0",
|
"date-fns": "^4.1.0",
|
||||||
"i18next": "^25.8.20",
|
"i18next": "^25.9.0",
|
||||||
"i18next-browser-languagedetector": "^8.2.1",
|
"i18next-browser-languagedetector": "^8.2.1",
|
||||||
"lucide-react": "^0.577.0",
|
"lucide-react": "^0.577.0",
|
||||||
"react": "^19.2.4",
|
"react": "^19.2.4",
|
||||||
@@ -7032,9 +7032,9 @@
|
|||||||
}
|
}
|
||||||
},
|
},
|
||||||
"node_modules/i18next": {
|
"node_modules/i18next": {
|
||||||
"version": "25.8.20",
|
"version": "25.9.0",
|
||||||
"resolved": "https://registry.npmjs.org/i18next/-/i18next-25.8.20.tgz",
|
"resolved": "https://registry.npmjs.org/i18next/-/i18next-25.9.0.tgz",
|
||||||
"integrity": "sha512-xjo9+lbX/P1tQt3xpO2rfJiBppNfUnNIPKgCvNsTKsvTOCro1Qr/geXVg1N47j5ScOSaXAPq8ET93raK3Rr06A==",
|
"integrity": "sha512-mJ4rVRNWOTkqh5xnaGR6iMFT5vEw3Y2MTJhcjinR/7u8cRv6dAfC0ofuePh5fVPxoh395p6JdrJTStCcNW66gg==",
|
||||||
"funding": [
|
"funding": [
|
||||||
{
|
{
|
||||||
"type": "individual",
|
"type": "individual",
|
||||||
|
|||||||
@@ -38,7 +38,7 @@
|
|||||||
"class-variance-authority": "^0.7.1",
|
"class-variance-authority": "^0.7.1",
|
||||||
"clsx": "^2.1.1",
|
"clsx": "^2.1.1",
|
||||||
"date-fns": "^4.1.0",
|
"date-fns": "^4.1.0",
|
||||||
"i18next": "^25.8.20",
|
"i18next": "^25.9.0",
|
||||||
"i18next-browser-languagedetector": "^8.2.1",
|
"i18next-browser-languagedetector": "^8.2.1",
|
||||||
"lucide-react": "^0.577.0",
|
"lucide-react": "^0.577.0",
|
||||||
"react": "^19.2.4",
|
"react": "^19.2.4",
|
||||||
|
|||||||
Reference in New Issue
Block a user