Haritha
e92112b014
Fix security vulnerabilities ( #767 )
...
* fix: resolve npm audit vulnerabilities, refresh license cache, rebuild dist
- npm audit fix resolves brace-expansion (high), fast-xml-parser (high),
and undici (moderate) advisories via transitive dependency updates
- Regenerated .licenses/npm cache to match updated dependency tree
- Rebuilt dist/setup and dist/cache-save bundles
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com >
* fix: sync vendored install-dotnet.ps1 with upstream dot.net script
Basic Validation was failing because the vendored copy of
externals/install-dotnet.ps1 was out of date compared to the live
script served from https://dot.net/v1/dotnet-install.ps1 , which
installation-scripts.test.ts compares against on every run.
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com >
---------
Co-authored-by: Copilot <223556219+Copilot@users.noreply.github.com >
2026-08-05 16:49:13 -05:00
Jason Ginchereau
4406a635cd
Bump @actions/cache to 5.1.0, log cache write denied ( #746 )
...
* Bump @actions/cache to 5.1.0, log cache write denied
* Add cache save failure test case
* Update dist
* Resolve high-severity audit issues
2026-06-22 13:33:08 -05:00
Copilot
df991aeaf2
chore: bump @actions/* and fast-xml-parser dependencies ( #728 )
...
* chore: update dependencies and license cache
Agent-Logs-Url: https://github.com/actions/setup-dotnet/sessions/e045029b-9f7d-4035-8714-f2c0a75f22f0
* fix: revert .licensed.yml change and set http-client license to mit
Agent-Logs-Url: https://github.com/actions/setup-dotnet/sessions/df77fea2-a442-4d42-9d49-a8617aa773a8
* Revert "fix: revert .licensed.yml change and set http-client license to mit"
This reverts commit 80db01fc60 .
Co-authored-by: priyagupta108 <147705955+priyagupta108@users.noreply.github.com >
---------
Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com >
Co-authored-by: priyagupta108 <147705955+priyagupta108@users.noreply.github.com >
2026-04-15 12:38:47 -05:00
dependabot[bot]
06a5327ecf
Bump undici from 5.28.5 to 5.29.0 ( #641 )
...
* Bump undici from 5.28.5 to 5.29.0
Bumps [undici](https://github.com/nodejs/undici ) from 5.28.5 to 5.29.0.
- [Release notes](https://github.com/nodejs/undici/releases )
- [Commits](https://github.com/nodejs/undici/compare/v5.28.5...v5.29.0 )
---
updated-dependencies:
- dependency-name: undici
dependency-version: 5.29.0
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
* Check failure fix
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: lmvysakh <lmvysakh@github.com >
2025-07-29 12:06:55 -05:00
dependabot[bot]
3951f0dfe7
Bump undici from 5.28.4 to 5.28.5 ( #596 )
...
* Bump undici from 5.28.4 to 5.28.5
Bumps [undici](https://github.com/nodejs/undici ) from 5.28.4 to 5.28.5.
- [Release notes](https://github.com/nodejs/undici/releases )
- [Commits](https://github.com/nodejs/undici/compare/v5.28.4...v5.28.5 )
---
updated-dependencies:
- dependency-name: undici
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
* fix for the check failures
* fix for licensed check failure
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: Aparna Jyothi <aparnajyothi-y@github.com >
2025-01-29 11:57:00 -06:00
dependabot[bot]
6bd8b7f777
Bump braces from 3.0.2 to 3.0.3 ( #533 )
...
* Bump braces from 3.0.2 to 3.0.3
Bumps [braces](https://github.com/micromatch/braces ) from 3.0.2 to 3.0.3.
- [Changelog](https://github.com/micromatch/braces/blob/master/CHANGELOG.md )
- [Commits](https://github.com/micromatch/braces/compare/3.0.2...3.0.3 )
---
updated-dependencies:
- dependency-name: braces
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
* Bump undici from 5.28.3 to 5.28.4
* update checkout from v3 to v4
* Update test proxy
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: HarithaVattikuti <73516759+HarithaVattikuti@users.noreply.github.com >
2024-07-08 14:47:49 -05:00
dependabot[bot]
5d1464d5da
Bump undici from 5.27.2 to 5.28.3 ( #515 )
...
* Bump undici from 5.27.2 to 5.28.3
Bumps [undici](https://github.com/nodejs/undici ) from 5.27.2 to 5.28.3.
- [Release notes](https://github.com/nodejs/undici/releases )
- [Commits](https://github.com/nodejs/undici/compare/v5.27.2...v5.28.3 )
---
updated-dependencies:
- dependency-name: undici
dependency-type: indirect
...
Signed-off-by: dependabot[bot] <support@github.com >
* fix failed check and updated dependencies
---------
Signed-off-by: dependabot[bot] <support@github.com >
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Co-authored-by: HarithaVattikuti <73516759+HarithaVattikuti@users.noreply.github.com >
2024-03-21 15:05:16 -05:00
HarithaVattikuti
4d6c8fcf3c
Upgrade Node to v20 ( #484 )
...
* Node Version upgrade to 20
* 4.0.0
* Action Files upgrade to 20
* Updated version for outdated
* Update Format check
* Auth Test file update
2023-12-04 19:47:27 +05:30