gitlab dependabot-gitlab/dependabot v3.45.0-alpha.1

18 hours ago

3.45.0-alpha.1 (2025-03-14)

⚠️ Security updates (3 changes)

  • [Security] Bump graphql from 2.4.8 to 2.4.13 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3495
  • [Security] Bump rack from 3.1.11 to 3.1.12 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3489
  • [Security] Bump uri from 0.13.1 to 0.13.2 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3478

🚀 New features (1 change)

  • Add docker compose ecosystem support by @andrcuns. See merge request dependabot-gitlab/dependabot!3470

🔬 Improvements (4 changes)

  • Add app component to context reported to sentry by @andrcuns. See merge request dependabot-gitlab/dependabot!3496
  • Use event processor for sentry tags and add dependency tag by @andrcuns. See merge request dependabot-gitlab/dependabot!3488
  • Add execution context info to sentry errors by @andrcuns. See merge request dependabot-gitlab/dependabot!3482
  • Do not process recreate command for closed merge request by @andrcuns. See merge request dependabot-gitlab/dependabot!3480

🐞 Bug Fixes (3 changes)

  • Fix incorrect return in before_send sentry hook by @andrcuns. See merge request dependabot-gitlab/dependabot!3487
  • Add docker-compose ecosystem to config schema by @andrcuns.
  • Add missing bun ecosystem to image release script by @andrcuns.

📦 Dependency updates (3 changes)

  • Bump dependabot-omnibus from 0.300.0 to 0.301.0 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3497
  • Bump sentry-rails from 5.22.4 to 5.23.0 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3491
  • Bump rails from 8.0.1 to 8.0.2 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3490

📦🔧 Development dependency updates (9 changes)

  • Bump rubocop-factory_bot from 2.27.0 to 2.27.1 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3494
  • Bump rubocop from 1.73.2 to 1.74.0 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3493
  • [Security] Bump axios from 1.8.1 to 1.8.2 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3486
  • Bump @types/node from 22.13.9 to 22.13.10 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3485
  • Bump @playwright/test from 1.50.1 to 1.51.0 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3483
  • Bump rubocop-rspec_rails from 2.30.0 to 2.31.0 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3481
  • Bump rspec-sidekiq from 5.0.0 to 5.1.0 by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3474
  • Bump mongo from 8.0.4 to 8.0.5 in /.devcontainer by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3472
  • Bump redis from 7.4.1 to 7.4.2 in /.devcontainer by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3471

🔧 CI changes (3 changes)

  • Use gitlab advanced security testing analyzer by @andrcuns. See merge request dependabot-gitlab/dependabot!3477
  • Add container scanning ci job by @andrcuns. See merge request dependabot-gitlab/dependabot!3477
  • Update CI deployment image versions by @andrcuns.

🧰 Maintenance (2 changes)

  • Use plugins in rubocop.yml file by @andrcuns.
  • Manage docker compose dependencies with dependabot by @andrcuns.

📄 Documentation updates (2 changes)

  • Add missing supported schedule interval types to documentation by @andrcuns. See merge request dependabot-gitlab/dependabot!3473
  • Display correct size for compose image badge by @andrcuns.

🚀 Deployment changes (1 change)

  • Bump gitlab-org/cluster-integration/gitlab-agent/agentk in /deploy/agent by @dependabot-bot. See merge request dependabot-gitlab/dependabot!3498

Don't miss a new dependabot release

NewReleases is sending notifications on new releases.