gitlab dependabot-gitlab/dependabot v6.1.0-alpha.1

8 hours ago

6.1.0-alpha.1 (2026-04-26)

⚠️ Security updates (2 changes)

  • [Security] Bump postcss from 8.5.8 to 8.5.10 by @dependabot. See merge request dependabot-gitlab/dependabot!4680
  • [Security] Bump fast-xml-parser and @aws-sdk/xml-builder by @dependabot. See merge request dependabot-gitlab/dependabot!4674

🚀 New features (1 change)

  • Add additional dependabot ecosystem support by @andrcuns. See merge request dependabot-gitlab/dependabot!4687

🐞 Bug Fixes (7 changes)

  • Explicitly set SSL_CERT_FILE variable to system ca bundle file by @andrcuns. See merge request dependabot-gitlab/dependabot!4688
  • Ensure uv picks up custom credential proxy certificates by @andrcuns. See merge request dependabot-gitlab/dependabot!4686
  • Fix notify_release and single dependency update workflow in service mode by @andrcuns. See merge request dependabot-gitlab/dependabot!4684
  • Do not discard notify_release job failures by @andrcuns. See merge request dependabot-gitlab/dependabot!4683
  • Correctly handle directory glob patterns for config entry lookups by @andrcuns. See merge request dependabot-gitlab/dependabot!4682
  • Fix incorrect config entry lookup for entries with directories key by @andrcuns. See merge request dependabot-gitlab/dependabot!4678
  • Correctly inject only job specific registries in to credentials proxy by @andrcuns. See merge request dependabot-gitlab/dependabot!4676

📦 Dependency updates (4 changes)

  • Bump dependabot-omnibus from 0.366.0 to 0.372.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4685
  • Bump good_job from 4.18.0 to 4.18.1 by @dependabot. See merge request dependabot-gitlab/dependabot!4681
  • Bump credential proxy version to v2.0.20260423171302 by @andrcuns.
  • Bump good_job from 4.16.0 to 4.18.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4675

📦🔧 Development dependency updates (2 changes)

  • Bump allure-report-publisher from 5.3.0 to 5.4.0 by @dependabot. See merge request dependabot-gitlab/dependabot!4679
  • Bump typescript from 6.0.2 to 6.0.3 by @dependabot. See merge request dependabot-gitlab/dependabot!4673

🧰 Maintenance (4 changes)

  • Raise on certificate setup error by @andrcuns. See merge request dependabot-gitlab/dependabot!4686
  • Add missing memoize for configurations in SingleDependencyUpdate by @andrcuns.
  • Add debug log message for selected registries for update run by @andrcuns. See merge request dependabot-gitlab/dependabot!4678
  • Add used kubernetes pod template to debug log by @andrcuns. See merge request dependabot-gitlab/dependabot!4678

🚀 Deployment changes (2 changes)

  • Bump chart version to 6.0.0-pre by @andrcuns.
  • Bump gitlab-org/cluster-integration/gitlab-agent/agentk in /deploy/agent by @dependabot. See merge request dependabot-gitlab/dependabot!4672

Don't miss a new dependabot release

NewReleases is sending notifications on new releases.