Skip to content

Update renovatebot/github-action action to v46.2.6 - #153

Open
csi-components-e2e wants to merge 1 commit into
mainfrom
renovate/all-non-major-dependencies
Open

Update renovatebot/github-action action to v46.2.6#153
csi-components-e2e wants to merge 1 commit into
mainfrom
renovate/all-non-major-dependencies

Conversation

@csi-components-e2e

Copy link
Copy Markdown
Collaborator

This PR contains the following updates:

Package Type Update Change
renovatebot/github-action action patch v46.2.5v46.2.6

Release Notes

renovatebot/github-action (renovatebot/github-action)

v46.2.6

Compare Source

Documentation
  • update references to renovatebot/github-action to v46.2.5 (48ae7cc)
Miscellaneous Chores
  • deps: update dependency lint-staged to v17.4.1 (d282d54)
  • deps: update dependency typescript-eslint to v8.68.0 (#​1078) (a523046)
  • deps: update pnpm/action-setup action to v6.1.0 (102d218)
Build System
  • deps: lock file maintenance (3b757d0)
Continuous Integration
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.52.1 (9984ec7)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.53.0 (faa6419)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.54.0 (2c96ef7)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.56.0 (dcb55da)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.56.1 (e2c9386)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.56.2 (913f400)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.56.3 (5e6fc58)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.57.2 (d469fc4)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.59.1 (66c7016)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.59.2 (ec50768)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.59.3 (31ef1b9)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.61.1 (d6e525c)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.61.3 (a2fa5a6)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.61.4 (d01e774)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.61.5 (d37ca4c)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.61.6 (0849a31)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.64.0 (e8a4545)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.64.1 (878ced9)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.65.0 (a2ab6bc)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.65.2 (3e5ee14)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.65.5 (6530be9)

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate CLI.

| datasource  | package                   | from    | to      |
| ----------- | ------------------------- | ------- | ------- |
| github-tags | renovatebot/github-action | v46.2.5 | v46.2.6 |
@csi-components-e2e csi-components-e2e added the dependencies Pull requests that update a dependency file label Sep 7, 2026
@csi-components-e2e
csi-components-e2e enabled auto-merge (squash) September 7, 2026 01:42
@github-actions

github-actions Bot commented Sep 7, 2026

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:24e766c8074bee3f022964e11a1d2f2b5d92fd67-v8.6.0-eksbuild.7

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:24e766c8074bee3f02- │  amazon  │        0        │    -    │
│ 2964e11a1d2f2b5d92fd67-v8.6.0-eksbuild.7 (amazon 2023.12.20260831 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        2        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 2 (UNKNOWN: 2, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬────────────────┬──────────┬────────┬───────────────────┬───────────────┬───────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability  │ Severity │ Status │ Installed Version │ Fixed Version │                           Title                           │
├─────────────────────┼────────────────┼──────────┼────────┼───────────────────┼───────────────┼───────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ CVE-2026-56855 │ UNKNOWN  │ fixed  │ v0.55.0           │ 0.56.0        │ Previously, after a channel has been established, a       │
│                     │                │          │        │                   │               │ malicious peer cou ......                                 │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-56855                │
│                     ├────────────────┤          │        │                   │               ├───────────────────────────────────────────────────────────┤
│                     │ CVE-2026-78662 │          │        │                   │               │ Previously, a channel registered in the mux's chanList is │
│                     │                │          │        │                   │               │ not usable u...                                           │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-78662                │
└─────────────────────┴────────────────┴──────────┴────────┴───────────────────┴───────────────┴───────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:24e766c8074bee3f022964e11a1d2f2b5d92fd67-v4.12.0-eksbuild.7

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:24e766c8074bee3f02296- │  amazon  │        0        │    -    │
│ 4e11a1d2f2b5d92fd67-v4.12.0-eksbuild.7 (amazon 2023.12.20260831 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        2        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 2 (UNKNOWN: 2, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬────────────────┬──────────┬────────┬───────────────────┬───────────────┬───────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability  │ Severity │ Status │ Installed Version │ Fixed Version │                           Title                           │
├─────────────────────┼────────────────┼──────────┼────────┼───────────────────┼───────────────┼───────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ CVE-2026-56855 │ UNKNOWN  │ fixed  │ v0.55.0           │ 0.56.0        │ Previously, after a channel has been established, a       │
│                     │                │          │        │                   │               │ malicious peer cou ......                                 │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-56855                │
│                     ├────────────────┤          │        │                   │               ├───────────────────────────────────────────────────────────┤
│                     │ CVE-2026-78662 │          │        │                   │               │ Previously, a channel registered in the mux's chanList is │
│                     │                │          │        │                   │               │ not usable u...                                           │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-78662                │
└─────────────────────┴────────────────┴──────────┴────────┴───────────────────┴───────────────┴───────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:24e766c8074bee3f022964e11a1d2f2b5d92fd67-v6.3.0-eksbuild.6

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:24e766c8074bee3f02- │  amazon  │        0        │    -    │
│ 2964e11a1d2f2b5d92fd67-v6.3.0-eksbuild.6 (amazon 2023.12.20260831 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        2        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 2 (UNKNOWN: 2, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬────────────────┬──────────┬────────┬───────────────────┬───────────────┬───────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability  │ Severity │ Status │ Installed Version │ Fixed Version │                           Title                           │
├─────────────────────┼────────────────┼──────────┼────────┼───────────────────┼───────────────┼───────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ CVE-2026-56855 │ UNKNOWN  │ fixed  │ v0.55.0           │ 0.56.0        │ Previously, after a channel has been established, a       │
│                     │                │          │        │                   │               │ malicious peer cou ......                                 │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-56855                │
│                     ├────────────────┤          │        │                   │               ├───────────────────────────────────────────────────────────┤
│                     │ CVE-2026-78662 │          │        │                   │               │ Previously, a channel registered in the mux's chanList is │
│                     │                │          │        │                   │               │ not usable u...                                           │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-78662                │
└─────────────────────┴────────────────┴──────────┴────────┴───────────────────┴───────────────┴───────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:24e766c8074bee3f022964e11a1d2f2b5d92fd67-v2.2.1-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:24e766c8074bee3f022964- │  amazon  │        0        │    -    │
│ e11a1d2f2b5d92fd67-v2.2.1-eksbuild.5 (amazon 2023.12.20260831 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        2        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 2 (UNKNOWN: 2, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬────────────────┬──────────┬────────┬───────────────────┬───────────────┬───────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability  │ Severity │ Status │ Installed Version │ Fixed Version │                           Title                           │
├─────────────────────┼────────────────┼──────────┼────────┼───────────────────┼───────────────┼───────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ CVE-2026-56855 │ UNKNOWN  │ fixed  │ v0.55.0           │ 0.56.0        │ Previously, after a channel has been established, a       │
│                     │                │          │        │                   │               │ malicious peer cou ......                                 │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-56855                │
│                     ├────────────────┤          │        │                   │               ├───────────────────────────────────────────────────────────┤
│                     │ CVE-2026-78662 │          │        │                   │               │ Previously, a channel registered in the mux's chanList is │
│                     │                │          │        │                   │               │ not usable u...                                           │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-78662                │
└─────────────────────┴────────────────┴──────────┴────────┴───────────────────┴───────────────┴───────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:24e766c8074bee3f022964e11a1d2f2b5d92fd67-v2.17.0-eksbuild.7

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:24e766c8- │  amazon  │        0        │    -    │
│ 074bee3f022964e11a1d2f2b5d92fd67-v2.17.0-eksbuild.7 (amazon 2023.12.20260831     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:24e766c8074bee3f022964e11a1d2f2b5d92fd67-v2.19.0-eksbuild.7

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:24e766c8074bee3f0229- │  amazon  │        0        │    -    │
│ 64e11a1d2f2b5d92fd67-v2.19.0-eksbuild.7 (amazon 2023.12.20260831 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:24e766c8074bee3f022964e11a1d2f2b5d92fd67-v8.6.0-eksbuild.7

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:24e766c8074bee- │  amazon  │        0        │    -    │
│ 3f022964e11a1d2f2b5d92fd67-v8.6.0-eksbuild.7 (amazon 2023.12.20260831 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        2        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 2 (UNKNOWN: 2, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬────────────────┬──────────┬────────┬───────────────────┬───────────────┬───────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability  │ Severity │ Status │ Installed Version │ Fixed Version │                           Title                           │
├─────────────────────┼────────────────┼──────────┼────────┼───────────────────┼───────────────┼───────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ CVE-2026-56855 │ UNKNOWN  │ fixed  │ v0.55.0           │ 0.56.0        │ Previously, after a channel has been established, a       │
│                     │                │          │        │                   │               │ malicious peer cou ......                                 │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-56855                │
│                     ├────────────────┤          │        │                   │               ├───────────────────────────────────────────────────────────┤
│                     │ CVE-2026-78662 │          │        │                   │               │ Previously, a channel registered in the mux's chanList is │
│                     │                │          │        │                   │               │ not usable u...                                           │
│                     │                │          │        │                   │               │ https://avd.aquasec.com/nvd/cve-2026-78662                │
└─────────────────────┴────────────────┴──────────┴────────┴───────────────────┴───────────────┴───────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:24e766c8074bee3f022964e11a1d2f2b5d92fd67-v0.9.6-eksbuild.1

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:24e766c807- │  amazon  │        0        │    -    │
│ 4bee3f022964e11a1d2f2b5d92fd67-v0.9.6-eksbuild.1 (amazon 2023.12.20260831        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

public.ecr.aws/ebs-csi-driver/aws-ebs-csi-driver:v1.65.0

Report Summary

┌──────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                              Target                              │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ public.ecr.aws/ebs-csi-driver/aws-ebs-csi-driver:v1.65.0 (amazon │  amazon  │        0        │    -    │
│ 2023.12.20260817 (Amazon Linux))                                 │          │                 │         │
├──────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ usr/bin/aws-ebs-csi-driver                                       │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant