Releases: dependabot/dependabot-core
Releases · dependabot/dependabot-core
v0.345.0
What's Changed
- Allow repo variables to target forks on smoke tests by @gmazzo in #13423
- Add Bazel support to the updater by @robaiken in #13414
- Add nil safety to uv file parser to handle uv path dependencies by @AndrewBryer in #13367
- v0.345.0 by @dependabot-core-action-automation[bot] in #13432
New Contributors
- @gmazzo made their first contribution in #13423
- @AndrewBryer made their first contribution in #13367
Full Changelog: v0.344.1...v0.345.0
v0.344.1
v0.344.0
v0.343.1
What's Changed
- always attempt ungrouped updates by @brettfo in #13211
- Add group method to handle sorbet nil class error by @AbhishekBhaskar in #13365
- Change smoke test branch to 'main' by @brettfo in #13374
- Bump minor python versions by @yeikel in #13375
- filefetcher not fetching Readme.md files despite uv/hatchling requiring it for metadata by @a-schur in #13307
- Fix broken Go wiki link in README by @Copilot in #13350
- Register Julia to register production check by @robaiken in #13389
- v0.343.1 by @dependabot-core-action-automation[bot] in #13391
Full Changelog: v0.343.0...v0.343.1
v0.343.0
What's Changed
- raise dependencyFile not resolvable error for incompatible version constraints by @a-schur in #13343
- allow for and display extra message with
private_source_bad_responseby @brettfo in #13364 - allow new format for existing pull requests by @brettfo in #13363
- Add support for updating dependencies in target files by @thavaahariharangit in #13362
- Add support for Python 3.14 by @yeikel in #13321
- v0.343.0 by @dependabot-core-action-automation[bot] in #13368
Full Changelog: v0.342.2...v0.343.0
v0.342.2
What's Changed
- Add Julia gemspec to GEMSPECS list by @robaiken in #13360
- Fix GitHub Actions dependency pinning with version tag prefixes by @thavaahariharangit in #13354
- v0.342.2 by @dependabot-core-action-automation[bot] in #13361
Full Changelog: v0.342.1...v0.342.2
v0.342.1
What's Changed
- Update temporary sigstore gem installation to use main repository fix by @markhallen in #13356
- v0.342.1 by @dependabot-core-action-automation[bot] in #13357
Full Changelog: v0.342.0...v0.342.1
v0.342.0
What's Changed
- Workaround: Skip fetching relationships for now by @brrygrdn in #13315
- Add support for the Julia language by @IanButterworth in #12316
- Add checks for invalid json responses in bundler package details fetcher class by @AbhishekBhaskar in #13311
- Fix Maven PropertyUpdater nil version error causing T.must failures by @Copilot in #13298
- Fix double replacement of image tags by @jasonpaulos in #13327
- Add error handling in hex lockfile updater by @AbhishekBhaskar in #13322
- Improve Cargo binary path error handling with clearer messages by @thavaahariharangit in #13338
- Fix Cargo UpdateChecker version resolution to prevent targeting non-existent versions by @thavaahariharangit in #13326
- updated integration tests by @alhss in #13344
- Fix permission error when writing Cargo manifest files with absolute paths by @thavaahariharangit in #13340
- Fix Cargo pre-1.0 semantic versioning classification (0.y.z minor updates as major) by @thavaahariharangit in #13349
- Add "Failed to build" error pattern in handle uv error method by @AbhishekBhaskar in #13346
- Skip external issue in lfs file fetching test by @robaiken in #13353
- v0.342.0 by @dependabot-core-action-automation[bot] in #13348
New Contributors
- @IanButterworth made their first contribution in #12316
Full Changelog: v0.341.0...v0.342.0
v0.341.0
What's Changed
- remove unused code by @jakecoffman in #13292
- remove unused updated_files_regex by @jakecoffman in #13289
- Fix uv dependency not resolvable sentry error by @AbhishekBhaskar in #13294
- Fix hex ecosystem update by @thiagogsr in #13143
- promote experiment to production by @jakecoffman in #13297
- fix missing base_commit_sha in mark_as_processed during exceptional behavior by @jakecoffman in #13300
- Support npm-shrinkwrap in npm workspaces by @zhgzhg in #13217
- Add temporary workaround for sigstore gem installation by @markhallen in #13312
- fix cargo workspace breaking bumps by @arctic-alpaca in #13201
- Cargo: Ensure workspace root is fetched when processing workspace dependencies in subdirectories by @thavaahariharangit in #13272
- Bump poetry from 2.2.0 to 2.2.1 in /python/helpers in the poetry group by @dependabot[bot] in #13146
- v0.341.0 by @dependabot-core-action-automation[bot] in #13310
New Contributors
- @thiagogsr made their first contribution in #13143
- @zhgzhg made their first contribution in #13217
- @arctic-alpaca made their first contribution in #13201
Full Changelog: v0.340.1...v0.341.0
v0.340.1
What's Changed
- changed structure of pull requests by @alhss in #13174
- specify which cargo update command fails by @a-schur in #13247
- Bump sigstore/cosign/cosign from v2.6.0 to v2.6.1 in /docker in the regclient group by @dependabot[bot] in #13234
- [Dependabot Graph] Retrieve dependency relationship information for Go projects by @brrygrdn in #13252
- remove separate file fetcher command by @jakecoffman in #13275
- Revert to
gem exec rake gems:releaseby installing sorbet-runtime dynamically by @markhallen in #13285 - make
fetch_filescommand noop by @brettfo in #13287 - remove unnecessary parameter by @brettfo in #13288
- v0.340.1 by @dependabot-core-action-automation[bot] in #13291
Full Changelog: v0.340.0...v0.340.1