build(deps): bump docker/setup-qemu-action from 4.2.0 to 4.3.0 - #7343
build(deps): bump docker/setup-qemu-action from 4.2.0 to 4.3.0#7343dependabot[bot] wants to merge 1 commit into
Conversation
Bumps [docker/setup-qemu-action](https://github.com/docker/setup-qemu-action) from 4.2.0 to 4.3.0. - [Release notes](https://github.com/docker/setup-qemu-action/releases) - [Commits](docker/setup-qemu-action@96fe6ef...1f40c72) --- updated-dependencies: - dependency-name: docker/setup-qemu-action dependency-version: 4.3.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
✅ Deploy Preview for pipecd-site canceled.
|
There was a problem hiding this comment.
🟢 Approval recommended
The change is a straightforward GitHub Action version bump with no apparent workflow/YAML issues in the modified steps.
Pull request overview
Updates the CI/CD workflows to use docker/setup-qemu-action v4.3.0 (pinned by commit SHA) so multi-arch build tooling stays current and benefits from upstream dependency/security updates.
Changes:
- Bump
docker/setup-qemu-actionfrom v4.2.0 to v4.3.0 in the tool image publishing workflow. - Bump
docker/setup-qemu-actionfrom v4.2.0 to v4.3.0 in the image/chart publishing workflow.
File summaries
| File | Description |
|---|---|
| .github/workflows/publish_tool.yaml | Updates the pinned docker/setup-qemu-action SHA to v4.3.0 for tool image builds. |
| .github/workflows/publish_image_chart.yaml | Updates the pinned docker/setup-qemu-action SHA to v4.3.0 for multi-arch image/chart publishing. |
Review details
- Files reviewed: 2/2 changed files
- Comments generated: 0
- Review effort level: Lite
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## master #7343 +/- ##
===========================================
+ Coverage 29.75% 41.01% +11.26%
===========================================
Files 601 24 -577
Lines 64442 2882 -61560
===========================================
- Hits 19172 1182 -17990
+ Misses 43778 1634 -42144
+ Partials 1492 66 -1426 Flags with carried forward coverage won't be shown. Click here to find out more. ☔ View full report in Codecov by Harness. 🚀 New features to boost your workflow:
|
|
Superseded by #7369. |
Bumps docker/setup-qemu-action from 4.2.0 to 4.3.0.
Release notes
Sourced from docker/setup-qemu-action's releases.
Commits
1f40c72Merge pull request #336 from docker/dependabot/npm_and_yarn/docker/actions-to...932216e[dependabot skip] chore: update generated contenta39e895build(deps): bump@docker/actions-toolkitfrom 0.92.0 to 0.96.0a98ae9fMerge pull request #333 from docker/dependabot/npm_and_yarn/undici-6.28.08ebc9d1[dependabot skip] chore: update generated contentc41e3fcbuild(deps): bump undici from 6.27.0 to 6.28.05fc60dfMerge pull request #332 from docker/dependabot/npm_and_yarn/brace-expansion-1...a26e892Merge pull request #328 from docker/dependabot/github_actions/actions/checkou...aa6d042Merge pull request #324 from docker/dependabot/github_actions/actions/setup-n...d381ce5Merge pull request #317 from docker/dependabot/npm_and_yarn/sigstore-4.1.1Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting
@dependabot rebase.Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)