From 0da21be439b285207b7b2d532c78aa6952c906fc Mon Sep 17 00:00:00 2001
From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com>
Date: Mon, 31 Mar 2025 11:46:54 +0530
Subject: [PATCH] chore: bump tj-actions/changed-files from 41 to 46 in
/.github/workflows (#39761)
MIME-Version: 1.0
Content-Type: text/plain; charset=UTF-8
Content-Transfer-Encoding: 8bit
Bumps
[tj-actions/changed-files](https://github.com/tj-actions/changed-files)
from 41 to 46.
Sourced from tj-actions/changed-files's
releases. [!WARNING] This commit has been removed from all tags and
branches, and necessary measures have been implemented to prevent
similar issues in the future. Additionally, as a precaution, we recommend rotating any secrets that
may have been exposed during this timeframe to ensure the continued
security of your workflows. Full Changelog: https://github.com/tj-actions/changed-files/compare/v46...v46.0.1 Full Changelog: https://github.com/tj-actions/changed-files/compare/v45.0.5...v46.0.0 Full Changelog: https://github.com/tj-actions/changed-files/compare/v45.0.5...v46.0.0 ... (truncated) Sourced from tj-actions/changed-files's
changelog. Co-authored-by: github-actions[bot] (2f7c5bf)
- (github-actions[bot]) Co-authored-by: github-actions[bot] (5cbf220)
- (github-actions[bot]) ... (truncated)Release notes
v46
Security Alert: A critical security issue was
identified in this action due to a compromised commit.Action Required:
changed-files section, decode it using the following
command: echo 'xxx' | base64 -d | base64 -d
If the output contains sensitive information (e.g., tokens or secrets),
revoke and rotate those secrets immediately.v35, v44.5.1), no action is required as these
tags have been updated and are now safe to use.Changes in v46.0.1
What's Changed
@jackton1 in tj-actions/changed-files#2472@github-actions
in tj-actions/changed-files#2473
Changes in v46.0.0
What's Changed
@jackton1 in tj-actions/changed-files#2465@jackton1 in tj-actions/changed-files#2466@jackton1 in tj-actions/changed-files#2467@jackton1 in tj-actions/changed-files#2468@github-actions
in tj-actions/changed-files#2469@jackton1 in tj-actions/changed-files#2471New Contributors
@github-actions
made their first contribution in tj-actions/changed-files#2469What's Changed
@jackton1 in tj-actions/changed-files#2465@jackton1 in tj-actions/changed-files#2466@jackton1 in tj-actions/changed-files#2467@jackton1 in tj-actions/changed-files#2468@github-actions
in tj-actions/changed-files#2469@jackton1 in tj-actions/changed-files#2471Changelog
Changelog
46.0.1
- (2025-03-16)
🔄 Update
46.0.0
- (2025-03-16)
🐛 Bug Fixes
➖ Remove
🔄 Update
📚 Documentation
45.0.9
- (2025-03-15)
🐛 Bug Fixes
@octokit/rest
to v21.1.1 (#2435)
(fb8dcda)
- (renovate[bot])@octokit/rest
to v21.1.0 (#2394)
(7b72c97)
- (renovate[bot])⚙️ Miscellaneous Tasks
@types/node
to v22.13.10 (#2459)
(e650cfd)
- (renovate[bot])@types/node
to v22.13.9 (#2454)
(c8e1cdb)
- (renovate[bot])Commits
2f7c5bf
Updated README.md (#2473)4189ec6
update: sync-release-version.yml to use signed commits (#2472)4cd184a
update: sync-release-version.yml (#2471)5cbf220
Updated README.md (#2469)0f1ffe6
fix: update update-readme.yml to sign-commits (#2468)ddef03e
fix: update permission in update-readme.yml workflow (#2467)9c2df0d
fix: update github workflow update-readme.yml (#2466)6525332
docs: update docs to highlight security issues (#2465)e37e952
Deleted renovate.jsona284dc1
Upgraded to v45.0.8 (#2462)
[](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores)
Dependabot will resolve any conflicts with this PR as long as you don't
alter it yourself. You can also trigger a rebase manually by commenting
`@dependabot rebase`.
[//]: # (dependabot-automerge-start)
[//]: # (dependabot-automerge-end)
---
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
- `@dependabot rebase` will rebase this PR
- `@dependabot recreate` will recreate this PR, overwriting any edits
that have been made to it
- `@dependabot merge` will merge this PR after your CI passes on it
- `@dependabot squash and merge` will squash and merge this PR after
your CI passes on it
- `@dependabot cancel merge` will cancel a previously requested merge
and block automerging
- `@dependabot reopen` will reopen this PR if it is closed
- `@dependabot close` will close this PR and stop Dependabot recreating
it. You can achieve the same result by closing it manually
- `@dependabot show