chore(deps): bump anchore/sbom-action from 0.17.7 to 0.24.0
Open
Number: #84
Type: Pull Request
State: Open
Type: Pull Request
State: Open
Author:
dependabot[bot]
Association: Unknown
Comments: 1
Association: Unknown
Comments: 1
Created:
April 27, 2026 at 06:41 AM UTC
(3 months ago)
(3 months ago)
Updated:
April 27, 2026 at 06:41 AM UTC
(3 months ago)
(3 months ago)
Labels:
dependencies
dependencies
Description:
Bumps anchore/sbom-action from 0.17.7 to 0.24.0.
Release notes
Sourced from anchore/sbom-action's releases.
v0.24.0
⬆️ Dependencies
- chore(deps): update Syft to v1.42.3 (#615) [@anchore-actions-token-generator[bot]]
v0.23.1
⬆️ Dependencies
- chore(deps): update Syft to v1.42.2 (#607) [@anchore-actions-token-generator[bot]]
- chore(deps): bump fast-xml-parser and all other deps (#604) [@dependabot[bot]]
v0.23.0
- switch to single-file dist build with sub-action flags and update dependencies (#595) [
@kzantow]- switch to esbuild (#590) [
@willmurphyscode]- update Syft to v1.42.1 (#599) [@anchore-actions-token-generator[bot]]
v0.22.2
⬆️ Dependencies
- chore(deps): bump fast-xml-parser from 5.3.3 to 5.3.4 (#581) [@dependabot[bot]]
- chore(deps): update Syft to v1.41.2 (#582) [@anchore-actions-token-generator[bot]]
- chore(deps-dev): bump the dev-dependencies group with 2 updates (#580) [@dependabot[bot]]
- chore(deps): update Syft to v1.41.1 (#579) [@anchore-actions-token-generator[bot]]
v0.22.1
⬆️ Dependencies
- chore(deps): update Syft to v1.41.0 (#576) [@anchore-actions-token-generator[bot]]
- chore(deps): bump lodash from 4.17.21 to 4.17.23 (#573) [@dependabot[bot]]
v0.22.0
Changes in v0.22.0
⬆️ Dependencies
- chore(deps-dev): bump the dev-dependencies group with 19 updates (#566) [
@dependabot]- chore(deps): bump npm-check-updates from 17.1.3 to 19.3.1 (#567) [
@dependabot]- chore(deps): update Syft to v1.40.1 (#563) [
@anchore-actions-token-generator[bot]]v0.21.1
Changes in v0.21.1
... (truncated)
Commits
e22c389chore(deps): update Syft to v1.42.3 (#615)36a5fdechore: update to node 24 + deps (#614)a0a6512chore(deps): bump actions/setup-node from 6.2.0 to 6.3.0 (#608)57aae52chore(deps): update Syft to v1.42.2 (#607)c29e913chore(deps): bump fast-xml-parser and other deps (#604)17ae174chore(deps/test): move to es modules, node:test, single dist file (#595)6d473d3chore(deps): update Syft to v1.42.1 (#599)60619e7fix tests and bump fast-xml-parser (#598)e2bd58achore(deps-dev): bump the dev-dependencies group with 3 updates (#592)d032d7dci(syft auto update): npm ci, not npm install (#597)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Package Dependencies
Technical Details
| ID: | 15539129 |
| UUID: | 4333631701 |
| Node ID: | PR_kwDORooX3s7V2eKR |
| Host: | GitHub |
| Repository: | RandomCodeSpace/docsiq |