chore(deps): bump tj-actions/changed-files from 40.2.1 to 41.0.1
Bumps tj-actions/changed-files from 40.2.1 to 41.0.1.
Release notes
Sourced from tj-actions/changed-files's releases.
v41.0.1
What's Changed
- Upgraded to v41 by
@tj-actions-botin tj-actions/changed-files#1811- chore(deps): update dependency eslint-plugin-prettier to v5.1.2 by
@renovatein tj-actions/changed-files#1813- fix: update characters escaped by safe output by
@jackton1in tj-actions/changed-files#1815Full Changelog: https://github.com/tj-actions/changed-files/compare/v41...v41.0.1
v41.0.0
🔥 🔥 BREAKING CHANGE 🔥 🔥
A new
safe_outputinput is now available to prevent outputting unsafe filename characters (Enabled by default). This would escape characters in the filename that could be used for command injection.[!NOTE] This can be disabled by setting the
safe_outputto false this comes with a recommendation to store all outputs generated in an environment variable first before using them.Example
... - name: Get changed files id: changed-files uses: tj-actions/changed-files@v40 with: safe_output: false # set to false because we are using an environment variable to store the output and avoid command injection.- name: List all added files env: ADDED_FILES: ${{ steps.changed-files.outputs.added_files }} run: | for file in "$ADDED_FILES"; do echo "$file was added" done...
What's Changed
- chore(deps): update typescript-eslint monorepo to v6.15.0 by
@renovatein tj-actions/changed-files#1801- Upgraded to v40.2.3 by
@tj-actions-botin tj-actions/changed-files#1800- chore(deps): update dependency eslint-plugin-prettier to v5.1.0 by
@renovatein tj-actions/changed-files#1802- chore(deps): lock file maintenance by
@renovatein tj-actions/changed-files#1803- chore(deps): update dependency eslint-plugin-prettier to v5.1.1 by
@renovatein tj-actions/changed-files#1804- fix: update safe output regex and the docs by
@tj-actions-botin tj-actions/changed-files#1805- Revert "chore(deps): update actions/download-artifact action to v4" by
@jackton1in tj-actions/changed-files#1806- Update README.md by
@jackton1in tj-actions/changed-files#1808- chore(deps): lock file maintenance by
@renovatein tj-actions/changed-files#1809- Updated README.md by
@tj-actions-botin tj-actions/changed-files#1810
... (truncated)
Changelog
Sourced from tj-actions/changed-files's changelog.
41.0.1 - (2023-12-24)
🐛 Bug Fixes
⚙️ Miscellaneous Tasks
- deps: Update dependency eslint-plugin-prettier to v5.1.2 (7aaf10d) - (renovate[bot])
⬆️ Upgrades
- Upgraded to v41 (#1811)
Co-authored-by: jackton1 [email protected] (cc08e17) - (tj-actions[bot])
41.0.0 - (2023-12-23)
🐛 Bug Fixes
⏪ Reverts
- Revert "chore(deps): update actions/download-artifact action to v4" (#1806)
(4f573fe) - (Tonye Jack)
🔄 Update
- Update README.md (6e79d6e) - (Tonye Jack)
- Update README.md (d13ac19) - (Tonye Jack)
- Update README.md (bb89f97) - (Tonye Jack)
- Updated README.md (#1810)
Co-authored-by: renovate[bot] (1864078) - (tj-actions[bot])
- Update README.md (#1808)
(47371c5) - (Tonye Jack)
📝 Other
- Merge pull request from GHSA-mcph-m25j-8j63
feat: add
safe_outputinput enabled by defaultfix: migrate README to safe uses of interpolation
fix: README
usestypo
... (truncated)
Commits
716b1e1fix: update characters escaped by safe output (#1815)7aaf10dchore(deps): update dependency eslint-plugin-prettier to v5.1.2cc08e17Upgraded to v41 (#1811)6e79d6eUpdate README.mdd13ac19Update README.mdbb89f97Update README.md1864078Updated README.md (#1810)f495a03chore(deps): lock file maintenance47371c5Update README.md (#1808)4f573feRevert "chore(deps): update actions/download-artifact action to v4" (#1806)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency -
@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)