gitlab dependabot-gitlab/dependabot v6.0.0-alpha.1

8 hours ago

6.0.0-alpha.1 (2026-04-23)

💥 Breaking changes (1 change)

  • Add credentials proxy for dependency update jobs by @andrcuns. See merge request dependabot-gitlab/dependabot!4603

⚠️ Security updates (8 changes)

  • [Security] Bump yard from 0.9.38 to 0.9.42 by @dependabot. See merge request dependabot-gitlab/dependabot!4651
  • Bump vite from 8.0.7 to 8.0.8 by @dependabot. See merge request dependabot-gitlab/dependabot!4630
  • Bump vite from 8.0.6 to 8.0.7 by @dependabot. See merge request dependabot-gitlab/dependabot!4625
  • Bump vite from 8.0.5 to 8.0.6 by @dependabot. See merge request dependabot-gitlab/dependabot!4621
  • [Security] Bump vite from 8.0.3 to 8.0.5 by @dependabot. See merge request dependabot-gitlab/dependabot!4618
  • [Security] Bump axios from 1.13.6 to 1.15.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4614
  • [Security] Bump lodash-es from 4.17.23 to 4.18.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4608
  • [Security] Bump lodash from 4.17.23 to 4.18.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4607

🔬 Improvements (1 change)

  • Add credentials proxy support for helm deployments by @andrcuns. See merge request dependabot-gitlab/dependabot!4628

🐞 Bug Fixes (4 changes)

  • Add missing secrets passthrough in standalone mode by @andrcuns. See merge request dependabot-gitlab/dependabot!4650
  • Do not report generic container failed errors to sentry by @andrcuns. See merge request dependabot-gitlab/dependabot!4645
  • Fix kubernetes client wrapper method redirect by @andrcuns. See merge request dependabot-gitlab/dependabot!4637
  • Fix incorrectly created vulnerability object by @andrcuns. See merge request dependabot-gitlab/dependabot!4628

📦 Dependency updates (20 changes)

  • Bump grape-entity from 1.0.2 to 1.0.3 by @dependabot. See merge request dependabot-gitlab/dependabot!4668
  • Bump good_job from 4.15.0 to 4.16.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4667
  • Update docker Docker tag to v29.4.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4662
  • Bump pagy from 43.5.0 to 43.5.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4660
  • Bump grape-entity from 1.0.1 to 1.0.2 by @dependabot. See merge request dependabot-gitlab/dependabot!4659
  • Bump @vitejs/plugin-vue from 6.0.5 to 6.0.6 by @dependabot. See merge request dependabot-gitlab/dependabot!4657
  • Update transitive npm dependencies by @andrcuns. See merge request dependabot-gitlab/dependabot!4644
  • Bump grape from 3.1.1 to 3.2.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4635
  • Bump good_job from 4.14.2 to 4.15.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4634
  • Bump @gitlab/ui from 131.2.0 to 132.0.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4629
  • Bump pagy from 43.4.4 to 43.5.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4624
  • Update dependency jemalloc/jemalloc to v5.3.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4623
  • Bump @gitlab/ui from 131.0.0 to 131.2.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4620
  • Bump good_job from 4.14.1 to 4.14.2 by @dependabot. See merge request dependabot-gitlab/dependabot!4617
  • Bump vite-plugin-static-copy from 4.0.0 to 4.0.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4615
  • Bump vue from 3.5.31 to 3.5.32 by @dependabot. See merge request dependabot-gitlab/dependabot!4612
  • Bump good_job from 4.14.0 to 4.14.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4610
  • Bump puma from 7.2.0 to 8.0.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4605
  • Update docker Docker tag to v29.4.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4604
  • Bump good_job from 4.13.3 to 4.14.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4598

📦🔧 Development dependency updates (18 changes)

  • Bump prettier from 3.8.2 to 3.8.3 by @dependabot. See merge request dependabot-gitlab/dependabot!4664
  • Bump faker from 3.6.1 to 3.7.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4663
  • Bump typescript-eslint from 8.58.1 to 8.58.2 by @dependabot. See merge request dependabot-gitlab/dependabot!4658
  • Bump simple-git from 3.35.2 to 3.36.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4656
  • Bump globals from 17.4.0 to 17.5.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4655
  • Bump simple-git from 3.33.0 to 3.35.2 by @andrcuns. See merge request dependabot-gitlab/dependabot!4619
  • Bump prettier from 3.8.1 to 3.8.2 by @dependabot. See merge request dependabot-gitlab/dependabot!4641
  • Bump allure-report-publisher from 5.2.1 to 5.3.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4640
  • Bump @types/node from 25.5.2 to 25.6.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4639
  • Bump rubocop from 1.86.0 to 1.86.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4636
  • Bump allure-js-commons from 3.7.0 to 3.7.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4631
  • Bump typescript-eslint from 8.58.0 to 8.58.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4626
  • Bump allure-js-commons from 3.6.0 to 3.7.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4622
  • Bump @types/node from 25.5.0 to 25.5.2 by @dependabot. See merge request dependabot-gitlab/dependabot!4613
  • Bump @readme/openapi-parser from 6.0.0 to 6.0.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4606
  • Bump @playwright/test from 1.58.2 to 1.59.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4600
  • Bump git from 4.3.1 to 4.3.2 by @dependabot. See merge request dependabot-gitlab/dependabot!4599
  • Bump docker-compose from 1.3.3 to 1.4.2 by @dependabot. See merge request dependabot-gitlab/dependabot!4597

🔧 CI changes (2 changes)

  • Switch standalone tests back to main branch by @andrcuns. See merge request dependabot-gitlab/dependabot!4648
  • Update docker Docker tag to v29.4 by @dependabot. See merge request dependabot-gitlab/dependabot!4602

🧰 Maintenance (7 changes)

  • Update dependency pre-commit to v4.6.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4666
  • Parse proxy json logs by @andrcuns. See merge request dependabot-gitlab/dependabot!4653
  • Encrypt proxy config.json when passing to proxy container by @andrcuns. See merge request dependabot-gitlab/dependabot!4652
  • Add warning message when credentials proxy is not enabled by @andrcuns. See merge request dependabot-gitlab/dependabot!4648
  • Remove redundant http request logging by @andrcuns. See merge request dependabot-gitlab/dependabot!4646
  • Update local setup with ability to debug setup with proxy by @andrcuns. See merge request dependabot-gitlab/dependabot!4628
  • Add missing kubernetes runner flow by @andrcuns. See merge request dependabot-gitlab/dependabot!4627

🚀 Deployment changes (9 changes)

  • Update dependency kubectl to v1.36.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4665
  • Update dependency terraform to v1.14.9 by @dependabot. See merge request dependabot-gitlab/dependabot!4661
  • Bump hashicorp/kubernetes from 3.0.1 to 3.1.0 in /deploy by @dependabot. See merge request dependabot-gitlab/dependabot!4654
  • Use correct latest helm chart version by @andrcuns.
  • Enable credentials proxy by @andrcuns. See merge request dependabot-gitlab/dependabot!4642
  • Bump gitlab-org/cluster-integration/gitlab-agent/agentk in /deploy/agent by @dependabot. See merge request dependabot-gitlab/dependabot!4638
  • Update dependency kubectl to v1.35.4 by @dependabot. See merge request dependabot-gitlab/dependabot!4633
  • Bump gitlab-org/cluster-integration/gitlab-agent/agentk in /deploy/agent by @dependabot. See merge request dependabot-gitlab/dependabot!4611
  • Update dependency helm to v4.1.4 by @dependabot. See merge request dependabot-gitlab/dependabot!4609

Don't miss a new dependabot release

NewReleases is sending notifications on new releases.