Skip to content

chore(deps): Bump actions/dependency-review-action from 4.9.0 to 5.0.0#50

Merged
SebTardif merged 1 commit into
mainfrom
dependabot/github_actions/actions/dependency-review-action-5
Jun 4, 2026
Merged

chore(deps): Bump actions/dependency-review-action from 4.9.0 to 5.0.0#50
SebTardif merged 1 commit into
mainfrom
dependabot/github_actions/actions/dependency-review-action-5

Conversation

@dependabot

@dependabot dependabot Bot commented on behalf of github Jun 1, 2026

Copy link
Copy Markdown
Contributor

Bumps actions/dependency-review-action from 4.9.0 to 5.0.0.

Release notes

Sourced from actions/dependency-review-action's releases.

5.0.0

This is a new major version of the Dependency Review Action which updates the runtime to node24. This requires a minimum Actions Runner version v2.327.1 to run.

What's Changed

New Contributors

Full Changelog: actions/dependency-review-action@v4.9.0...v5.0.0

Commits
  • a1d282b Merge pull request #1098 from actions/ahpook/v5-release
  • eb6c199 update examples to show @​v5
  • 3943c2c v5.0.0 release branch
  • 454943c Merge pull request #1094 from actions/ashelytc/security-findings
  • 6d92a12 revert @​typescript-eslint/parser update
  • a8e5a7e Merge pull request #1076 from tspascoal/fix-version-matching-for-non-string-s...
  • b6b7079 update @​typescript-eslint/parser to 8.40.0
  • 821a21d update more dependencies
  • 05aaaae run npm audit fix
  • 55d3e75 Merge pull request #1077 from Marukome0743/docs/checkout
  • Additional commits viewable in compare view

@dependabot dependabot Bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Jun 1, 2026
@dependabot dependabot Bot changed the title chore(deps): Bump actions/dependency-review-action from 4 to 5 chore(deps): Bump actions/dependency-review-action from 4.9.0 to 5.0.0 Jun 4, 2026
@dependabot dependabot Bot force-pushed the dependabot/github_actions/actions/dependency-review-action-5 branch 2 times, most recently from 1290efb to 10442a9 Compare June 4, 2026 19:26
@dependabot dependabot Bot requested a review from SebTardif as a code owner June 4, 2026 19:26
@dependabot dependabot Bot force-pushed the dependabot/github_actions/actions/dependency-review-action-5 branch 2 times, most recently from b570923 to 5fcb82e Compare June 4, 2026 19:34
Bumps [actions/dependency-review-action](https://github.com/actions/dependency-review-action) from 4.9.0 to 5.0.0.
- [Release notes](https://github.com/actions/dependency-review-action/releases)
- [Commits](actions/dependency-review-action@2031cfc...a1d282b)

---
updated-dependencies:
- dependency-name: actions/dependency-review-action
  dependency-version: '5'
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/github_actions/actions/dependency-review-action-5 branch from 5fcb82e to b9ac0f3 Compare June 4, 2026 19:36

@SebTardif SebTardif left a comment

Copy link
Copy Markdown
Contributor

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

LGTM - major version bump reviewed.

@SebTardif SebTardif merged commit 6355ce9 into main Jun 4, 2026
17 of 20 checks passed
@dependabot dependabot Bot deleted the dependabot/github_actions/actions/dependency-review-action-5 branch June 4, 2026 20:01
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant