Skip to content

chore(deps): bump netcracker/qubership-workflow-hub from 2.0.10 to 2.1.0 in /.github/workflows#327

Open
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/dot-github/workflows/netcracker/qubership-workflow-hub-2.1.0
Open

chore(deps): bump netcracker/qubership-workflow-hub from 2.0.10 to 2.1.0 in /.github/workflows#327
dependabot[bot] wants to merge 1 commit intomainfrom
dependabot/github_actions/dot-github/workflows/netcracker/qubership-workflow-hub-2.1.0

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Mar 9, 2026

Bumps netcracker/qubership-workflow-hub from 2.0.10 to 2.1.0.

Release notes

Sourced from netcracker/qubership-workflow-hub's releases.

2.1.0

🚀 Release

Note

Minor version update: Upgrades dependencies, migrates all GitHub Actions and shared packages from CommonJS to ES modules, replaces the build tool from ncc to esbuild, adds unit tests for all migrated actions, upgrades Node.js runtime to node24.

What's Changed

  • (#617) chore(deps): bump actions/download-artifact from 7.0.0 to 8.0.0 by @dependabot[bot]
  • (#613) chore(deps): bump netcracker/qubership-workflow-hub/.github/workflows/re-security-scan.yml from 41f98662cc26d9ae7862fbd71a549d41925e70b1 to 3455faf5f07b0d0d554ddcba5209f251727f66bb by @dependabot[bot]
  • (#616) chore(deps): bump actions/setup-go from 6.2.0 to 6.3.0 by @dependabot[bot]
  • (#615) chore(deps): bump github/codeql-action from 4.32.4 to 4.32.5 by @dependabot[bot]
  • (#614) chore(deps): bump actions/upload-artifact from 6 to 7 by @dependabot[bot]
  • (#608) chore(deps): bump the npm_and_yarn group across 1 directory with 1 update by @dependabot[bot]

💡 New Features

  • (#620) feat: Upgrade dependencies and migrate to ES modules by @​nookyo
  • (#619) feat: added two new parameters grype-version & trivy-version by @​borislavr
  • (#610) feat: integrate esbuild for bundling and add tag length truncation feature by @​nookyo

🐞 Bug Fixes

  • (#612) fix: update continue-on-error handling in Trivy scan to use input value by @​nookyo
  • (#610) feat: integrate esbuild for bundling and add tag length truncation feature by @​nookyo

⚙️ Technical Debt

  • (#620) feat: Upgrade dependencies and migrate to ES modules by @​nookyo

📝 Documentation

  • (#610) feat: integrate esbuild for bundling and add tag length truncation feature by @​nookyo

Full Changelog: Netcracker/qubership-workflow-hub@v2.0.11...v2.1.0

2.0.11

🚀 Release

What's Changed

  • (#602) chore(deps): bump netcracker/qubership-workflow-hub/.github/workflows/re-security-scan.yml from 8dcca236b2ba574bec6cc1aedad5d81fa526e654 to 41f98662cc26d9ae7862fbd71a549d41925e70b1 by @dependabot[bot]
  • (#607) chore(deps): bump minimatch from 10.1.1 to 10.2.4 in /actions/assets-action in the npm_and_yarn group across 1 directory by @dependabot[bot]
  • (#604) chore(deps): bump the npm_and_yarn group across 3 directories with 1 update by @dependabot[bot]
  • (#603) chore(deps): bump github/codeql-action from 4.32.2 to 4.32.4 by @dependabot[bot]
  • (#601) chore(deps): bump aquasecurity/trivy-action from 0.33.1 to 0.34.1 by @dependabot[bot]
  • (#593) chore(deps): bump ajv from 8.17.1 to 8.18.0 in /actions/pr-assigner by @dependabot[bot]
  • (#590) chore(deps): bump ajv from 8.17.1 to 8.18.0 in /actions/container-package-cleanup by @dependabot[bot]
  • (#592) chore(deps): bump ajv from 8.17.1 to 8.18.0 in /actions/metadata-action by @dependabot[bot]

... (truncated)

Commits
  • 753d4a7 Update references to the new version
  • be2aff6 feat: Upgrade dependencies and migrate to ES modules (#620)
  • 54fe4aa chore(deps): bump actions/download-artifact from 7.0.0 to 8.0.0 (#617)
  • c019562 chore(deps): bump netcracker/qubership-workflow-hub/.github/workflows/re-secu...
  • e7524e5 chore(deps): bump actions/setup-go from 6.2.0 to 6.3.0 (#616)
  • d050287 chore(deps): bump github/codeql-action from 4.32.4 to 4.32.5 (#615)
  • 99082f8 chore(deps): bump actions/upload-artifact from 6 to 7 (#614)
  • bae01f2 chore(deps): bump the npm_and_yarn group across 1 directory with 1 update (#608)
  • 5fe551a feat: added two new parameters grype-version & trivy-version (#619)
  • 3455faf fix: update continue-on-error handling in Trivy scan to use input value (#612)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [netcracker/qubership-workflow-hub](https://github.com/netcracker/qubership-workflow-hub) from 2.0.10 to 2.1.0.
- [Release notes](https://github.com/netcracker/qubership-workflow-hub/releases)
- [Commits](Netcracker/qubership-workflow-hub@8d542a4...753d4a7)

---
updated-dependencies:
- dependency-name: netcracker/qubership-workflow-hub
  dependency-version: 2.1.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Mar 9, 2026
@dependabot dependabot bot requested a review from nookyo as a code owner March 9, 2026 22:26
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Mar 9, 2026
@dependabot dependabot bot requested a review from borislavr as a code owner March 9, 2026 22:26
@dependabot dependabot bot added the github_actions Pull requests that update GitHub Actions code label Mar 9, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant