Skip to content

Bump blackduck-inc/black-duck-security-scan from 2.1.1 to 2.7.0#174

Open
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/github_actions/blackduck-inc/black-duck-security-scan-2.7.0
Open

Bump blackduck-inc/black-duck-security-scan from 2.1.1 to 2.7.0#174
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/github_actions/blackduck-inc/black-duck-security-scan-2.7.0

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Feb 12, 2026

Bumps blackduck-inc/black-duck-security-scan from 2.1.1 to 2.7.0.

Release notes

Sourced from blackduck-inc/black-duck-security-scan's releases.

Black Duck Security Scan v2.7.0

  • Multi-version support for Polaris
  • Bug Fixes

Black Duck Security Scan v2.6.0 supports:

  • Proxy Configuration

Black Duck Security Scan v2.5.0

Fail PR For Coverity

Black Duck Security Scan v2.4.0

Polaris Local scan Analysis changes - Feature turned off

Black Duck Security Scan v2.3.0 supports:

  • Support for Sigma Raid Scan
  • Self signed support for Coverity, BlackDuck SCA and Polaris.
  • Passing custom header info to bridge.
  • Update spacing concerns in bridge output folder names.

Black Duck Security Scan v2.2.1 supports:

  • Updates diagnostic file names dynamically to avoid 409 errors.

Black Duck Security Scan v2.2.0

Black Duck Security Scan v2.2.0 supports:

  • Support for Linux ARM.
Commits
  • 8ad96f4 fix : sarif dir - warning msg (#128)
  • b27c4fd SIGINT-4297: Vulnerabilities Resolution (#127)
  • c1ce0b3 upgrade action version to 2.7.0 [skip ci] (#126)
  • afe0dd3 Updated for SIGINT-4250 (#125)
  • 7cca254 Sigint 3342 (#123)
  • a1da1b2 Sarif dir and file validation (#124)
  • 851e014 Merge pull request #122 from blackduck-inc/action_version_update_2.6.0
  • 4e41d1d upgrade action version to 2.6.0 [skip ci]
  • 8c0cc54 Merge pull request #119 from blackduck-inc/support-proxy
  • 980c840 Improve proxy configuration handling and add NO_PROXY pattern matching
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [blackduck-inc/black-duck-security-scan](https://github.com/blackduck-inc/black-duck-security-scan) from 2.1.1 to 2.7.0.
- [Release notes](https://github.com/blackduck-inc/black-duck-security-scan/releases)
- [Changelog](https://github.com/blackduck-inc/black-duck-security-scan/blob/main/releasesrc)
- [Commits](blackduck-inc/black-duck-security-scan@v2.1.1...v2.7.0)

---
updated-dependencies:
- dependency-name: blackduck-inc/black-duck-security-scan
  dependency-version: 2.7.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code labels Feb 12, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update GitHub Actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant