Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Sep 26, 2024

Bumps zaproxy/action-full-scan from 0.3.0 to 0.11.0.

Release notes

Sourced from zaproxy/action-full-scan's releases.

Version 0.11.0

Changed

  • Update dependencies, which adds rate-limiting when accessing the GitHub API #59.

Fixed

  • Allow to write any file from the Docker container.

Version 0.10.0

Changed

  • Update dependencies.

Version 0.9.0

Changed

  • Run with node20. #80

Version 0.8.0

Added

  • Support for authentication environment variables.

Version 0.7.0

Fixed

  • Update Crowdin link.

Added

  • An input (artifact_name) used to name the artifact that contains the ZAP reports. #73

Version 0.6.0

Changed

  • The default Docker image was changed to ghcr.io/zaproxy/zaproxy:stable.

Version 0.5.1

Fixed

  • Check issues with authenticated user. #66

Version 0.5.0

Changed

  • Addresses GitHub Actions Node 12 deprecation.
  • Update dependencies.

Fixed

  • Correct the name of the GITHUB_TOKEN secret mentioned in the README.

Version 0.4.0

Changed

  • Update dependencies.

Fixed

  • Use default zap user rather than root to allow the Ajax Spider to run.
Changelog

Sourced from zaproxy/action-full-scan's changelog.

[0.11.0] - 2024-09-25

Changed

  • Update dependencies, which adds rate-limiting when accessing the GitHub API #59.

Fixed

  • Allow to write any file from the Docker container.

[0.10.0] - 2024-04-02

Changed

  • Update dependencies.

[0.9.0] - 2024-01-25

Changed

  • Run with node20. #80

[0.8.0] - 2023-10-31

Added

  • Support for authentication environment variables.

[0.7.0] - 2023-08-24

Fixed

  • Update Crowdin link.

Added

  • An input (artifact_name) used to name the artifact that contains the ZAP reports. #73

[0.6.0] - 2023-08-02

Changed

  • The default Docker image was changed to ghcr.io/zaproxy/zaproxy:stable.

[0.5.1] - 2023-07-05

Fixed

  • Check issues with authenticated user. #66

[0.5.0] - 2023-06-29

Changed

  • Addresses GitHub Actions Node 12 deprecation.
  • Update dependencies.

Fixed

  • Correct the name of the GITHUB_TOKEN secret mentioned in the README.

[0.4.0] - 2022-05-23

Changed

  • Update dependencies.

Fixed

  • Use default zap user rather than root to allow the Ajax Spider to run.
Commits
  • 0f85034 Merge pull request #94 from thc202/release-v0.11.0
  • 753ebc1 Release v0.11.0
  • 1aadbfd Update dependencies (#93)
  • a9fbae9 Allow to write any file to the workspace (#90)
  • 2caa057 Bump undici from 5.28.3 to 5.28.4 (#88)
  • 7dd3dd7 Merge pull request #87 from thc202/update-changelog
  • 0b754da Prepare next dev version
  • d2a0747 Merge pull request #86 from thc202/release-v0.10.0
  • fea7cb3 Update dependencies, release v0.10.0
  • df6c9de Merge pull request #85 from thc202/update-changelog
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [zaproxy/action-full-scan](https://github.com/zaproxy/action-full-scan) from 0.3.0 to 0.11.0.
- [Release notes](https://github.com/zaproxy/action-full-scan/releases)
- [Changelog](https://github.com/zaproxy/action-full-scan/blob/master/CHANGELOG.md)
- [Commits](zaproxy/action-full-scan@v0.3.0...v0.11.0)

---
updated-dependencies:
- dependency-name: zaproxy/action-full-scan
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependency github_actions Pull requests that update GitHub Actions code labels Sep 26, 2024
@vercel
Copy link

vercel bot commented Sep 26, 2024

The latest updates on your projects. Learn more about Vercel for Git ↗︎

Name Status Preview Comments Updated (UTC)
devtools ❌ Failed (Inspect) Sep 26, 2024 2:12am

@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Nov 22, 2024

Superseded by #446.

@dependabot dependabot bot closed this Nov 22, 2024
@dependabot dependabot bot deleted the dependabot/github_actions/zaproxy/action-full-scan-0.11.0 branch November 22, 2024 02:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependency github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant