Skip to content

Bump taskcluster from 44.2.2 to 44.6.1 in /tools#143

Closed
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/pip/tools/taskcluster-44.6.1
Closed

Bump taskcluster from 44.2.2 to 44.6.1 in /tools#143
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/pip/tools/taskcluster-44.6.1

Conversation

@dependabot
Copy link
Copy Markdown

@dependabot dependabot bot commented on behalf of github Feb 17, 2022

Bumps taskcluster from 44.2.2 to 44.6.1.

Release notes

Sourced from taskcluster's releases.

v44.6.1

DEVELOPERS

▶ [patch] #5193 Fix webpack loader to properly handle .mjs modules.

Include yarn build in testing pipeline to avoid inconsistent dependencies.

v44.5.0

GENERAL

▶ [patch] #5082 Updated go from 1.16.7 to 1.17.6. This fixes an issue where the generic worker failed to build on M1 MacBooks (arm64).

USERS

▶ [minor] Fixed artifacts pagination

OTHER

▶ Additional change not described here: #5070.

Automated Package Updates

  • Update dependency marked to v4.0.12 (0906dace1)
  • Update dependency commander to v9 (1f4311d02)
  • Update dependency node-forge to v1.2.1 (5c574d544)
  • Update dependency matrix-js-sdk to v15 (7cf55a467)
  • Update dependency node-fetch to v2.6.7 [SECURITY] (0cfcab9dd)
  • Update dependency apollo-server-express to v3 (181db987b)
  • Update dependency github-slugger to v1.4.0 (d44be4204)

v44.4.0

DEPLOYERS

▶ [patch] #5039 The new queue.aws_endpoint Helm configuration value allows setting the endpoint used to access S3 buckets. This configuration enables use of non-AWS S3-compatible backends.

DEVELOPERS

▶ [minor] #4614 This version drops support for Python-2.7 in the Python client. Python-2.7's support window ended over one year ago.

... (truncated)

Changelog

Sourced from taskcluster's changelog.

v44.6.1

DEVELOPERS

▶ [patch] #5193 Fix webpack loader to properly handle .mjs modules.

Include yarn build in testing pipeline to avoid inconsistent dependencies.

v44.6.0

GENERAL

▶ [minor] Node.js major update from 14.17.15 to 16.13.2, the latest LTS version.

Update the worker-ci image from Ubuntu 14.04 to 20.04, the current LTS version. This image is used in Taskcluster CI testing. This includes Python 3.8 (as python3), needed to build with node-gyp, and no longer includes Python 2.7. It also updates the Docker engine from 18.06.3 to 20.10.12.

▶ [minor] Node.js minor update from 16.13.2 to 16.14.0, the latest LTS version.

▶ [minor] This release updates the docker-worker-websocket-client and docker-worker-websocket-server libraries, used by docker-worker to execute commands inside a running container. These updates fix a bug when reading and writing data to the process in the container, which may have been broken since 2015, and be a part of why VNC was broken (see issue 3542). This change required for Node v16, and may affect tasks that use this library like the interactive feature.

▶ [patch] Go patch update from 1.17.6 to 1.17.7.

▶ [patch] Replaced github.com/dgrijalva/jwt-go with github.com/golang-jwt/jwt/v4 as suggested in the high dependabot vulnerability listed here.

▶ [patch] #4940 Sets the content type of the json returned by the __heartbeat__ and __lbheartbeat__ endpoints.

USERS

▶ [patch] #5153 Fixes taskcluster/taskcluster#5153. CLI signin now properly redirects to a success page.

DEVELOPERS

... (truncated)

Commits

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Feb 17, 2022
@dependabot @github
Copy link
Copy Markdown
Author

dependabot bot commented on behalf of github Feb 18, 2022

Superseded by #145.

@dependabot dependabot bot closed this Feb 18, 2022
@dependabot dependabot bot deleted the dependabot/pip/tools/taskcluster-44.6.1 branch February 18, 2022 11:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file python Pull requests that update Python code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants