brave / security-action

Composite GitHub CI Action containing the minimal viable security lint for brave repositories
Mozilla Public License 2.0
17 stars 6 forks source link

chore(deps): update actions/setup-python action to v5.3.0 - autoclosed #704

Closed renovate[bot] closed 2 weeks ago

renovate[bot] commented 2 weeks ago

This PR contains the following updates:

Package Type Update Change
actions/setup-python action minor v5.2.0 -> v5.3.0

Release Notes

actions/setup-python (actions/setup-python) ### [`v5.3.0`](https://redirect.github.com/actions/setup-python/releases/tag/v5.3.0) [Compare Source](https://redirect.github.com/actions/setup-python/compare/v5.2.0...v5.3.0) ##### What's Changed - Add workflow file for publishing releases to immutable action package by [@​Jcambass](https://redirect.github.com/Jcambass) in [https://github.com/actions/setup-python/pull/941](https://redirect.github.com/actions/setup-python/pull/941) - Upgrade IA publish by [@​Jcambass](https://redirect.github.com/Jcambass) in [https://github.com/actions/setup-python/pull/943](https://redirect.github.com/actions/setup-python/pull/943) ##### Bug Fixes: - Normalise Line Endings to Ensure Cross-Platform Consistency by [@​priya-kinthali](https://redirect.github.com/priya-kinthali) in [https://github.com/actions/setup-python/pull/938](https://redirect.github.com/actions/setup-python/pull/938) - Revise `isGhes` logic by [@​jww3](https://redirect.github.com/jww3) in [https://github.com/actions/setup-python/pull/963](https://redirect.github.com/actions/setup-python/pull/963) - Bump pillow from 7.2 to 10.2.0 by [@​aparnajyothi-y](https://redirect.github.com/aparnajyothi-y) in [https://github.com/actions/setup-python/pull/956](https://redirect.github.com/actions/setup-python/pull/956) ##### Enhancements: - Enhance workflows and documentation updates by [@​priya-kinthali](https://redirect.github.com/priya-kinthali) in [https://github.com/actions/setup-python/pull/965](https://redirect.github.com/actions/setup-python/pull/965) - Bump default versions to latest by [@​jeffwidman](https://redirect.github.com/jeffwidman) in [https://github.com/actions/setup-python/pull/905](https://redirect.github.com/actions/setup-python/pull/905) ##### New Contributors - [@​Jcambass](https://redirect.github.com/Jcambass) made their first contribution in [https://github.com/actions/setup-python/pull/941](https://redirect.github.com/actions/setup-python/pull/941) - [@​jww3](https://redirect.github.com/jww3) made their first contribution in [https://github.com/actions/setup-python/pull/963](https://redirect.github.com/actions/setup-python/pull/963) **Full Changelog**: https://github.com/actions/setup-python/compare/v5...v5.3.0

Configuration

📅 Schedule: Branch creation - " 0-4 * 3" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR was generated by Mend Renovate. View the repository job log.

github-actions[bot] commented 2 weeks ago

[puLL-Merge] - actions/setup-python@v5.2.0..v5.3.0

Description

This PR updates the setup-python action to support newer versions of Python, PyPy, and GraalPy. It also adds support for macOS 13, improves GHES detection, and makes various other improvements and bug fixes.

Changes ### Changes 1. .github/workflows/e2e-cache.yml: - Added support for macOS-13 - Updated Python versions to include 3.10 and PyPy 3.10 2. .github/workflows/e2e-tests.yml: - Added a new job for testing older Python versions - Updated Python versions to include 3.12.7 and 3.13.0 - Added support for macOS-13 3. .github/workflows/publish-immutable-actions.yml: - Added a new workflow for publishing immutable action versions 4. .github/workflows/release-new-action-version.yml: - Updated the publish-action version to v0.3.0 5. .github/workflows/test-graalpy.yml: - Added support for GraalPy versions 23.1 and 24.1 - Added support for macOS-13 6. .github/workflows/test-pypy.yml: - Updated PyPy versions - Added support for macOS-13 7. .github/workflows/test-python.yml: - Added support for Python 3.13.0 - Added support for macOS-13 8. README.md: - Updated examples to use newer Python versions - Updated architecture support information to include arm64 9. __tests__/data/requirements.txt: - Updated pillow version to >=10.2.0 for security reasons 10. __tests__/utils.test.ts: - Added tests for the isGhes function 11. action.yml: - Updated architecture description to include arm64 12. dist/setup/index.js: - Updated isGhes function to improve GHES detection - Added normalization for line endings in pyproject.toml files 13. docs/advanced-usage.md: - Updated examples and documentation to reflect newer Python versions 14. src/utils.ts: - Updated isGhes function to improve GHES detection - Added normalization for line endings in pyproject.toml files

Security Hotspots

Possible Issues