Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 30, 2025

Bumps taskcluster from 91.0.1 to 91.1.2.

Release notes

Sourced from taskcluster's releases.

v91.1.2

GENERAL

▶ [patch] Upgrades to Node.js v24.11.0

DEPLOYERS

▶ [patch] Worker-scanner azure now exposes metrics to prometheus too.

DEVELOPERS

▶ [patch] #8042 DB adds primary key to the tcversion table

▶ [patch] #7376 Check-in the initial code for generating Firefox Profiler profiles for task logs and task groups.

Automated Package Updates

  • build(deps): bump @​messageformat/runtime from 3.0.1 to 3.0.2 (6b40347a05)

v91.1.1

GENERAL

▶ [patch] Upgrades to Node.js latest LTS, v24.10.0

WORKER-DEPLOYERS

▶ [patch] #8012 Generic Worker (windows): creates no cmd.exe window that appeared during task execution.

▶ [patch] Worker Runner now doesn't allow workers to be bootstrapped with zip files containing the Zip Slip vulnerability.

USERS

▶ [patch] Fixes documentation typos and links

DEVELOPERS

... (truncated)

Changelog

Sourced from taskcluster's changelog.

v91.1.2

GENERAL

▶ [patch] Upgrades to Node.js v24.11.0

DEPLOYERS

▶ [patch] Worker-scanner azure now exposes metrics to prometheus too.

DEVELOPERS

▶ [patch] #8042 DB adds primary key to the tcversion table

▶ [patch] #7376 Check-in the initial code for generating Firefox Profiler profiles for task logs and task groups.

Automated Package Updates

  • build(deps): bump @​messageformat/runtime from 3.0.1 to 3.0.2 (6b40347a05)

v91.1.1

GENERAL

▶ [patch] Upgrades to Node.js latest LTS, v24.10.0

WORKER-DEPLOYERS

▶ [patch] #8012 Generic Worker (windows): creates no cmd.exe window that appeared during task execution.

▶ [patch] Worker Runner now doesn't allow workers to be bootstrapped with zip files containing the Zip Slip vulnerability.

USERS

▶ [patch] Fixes documentation typos and links

... (truncated)

Commits
  • 377ec7f v91.1.2
  • 85c7b92 Merge pull request #8047 from taskcluster/feat/wm-azure-metrics
  • ad92d81 feat(db): Adds primary key to tcversion table (#8043)
  • 17503b8 feat(k8s): Worker-scanner azure was not exposing metrics
  • 3225f9e Merge pull request #8046 from taskcluster/dependabot/npm_and_yarn/messageform...
  • 9be250a Merge pull request #8045 from taskcluster/matt-boris/node24.11.0
  • 6b40347 build(deps): bump @​messageformat/runtime from 3.0.1 to 3.0.2
  • 622e394 build(deps): upgrade to nodejs 24.11.0
  • 1fe7a40 feat(db): Adds primary key to tcversion table
  • 1a737ce Port over the minimal code for the Task Profiler implementation (#7376)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [taskcluster](https://github.com/taskcluster/taskcluster) from 91.0.1 to 91.1.2.
- [Release notes](https://github.com/taskcluster/taskcluster/releases)
- [Changelog](https://github.com/taskcluster/taskcluster/blob/main/CHANGELOG.md)
- [Commits](taskcluster/taskcluster@v91.0.1...v91.1.2)

---
updated-dependencies:
- dependency-name: taskcluster
  dependency-version: 91.1.2
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file python Pull requests that update Python code labels Oct 30, 2025
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Nov 5, 2025

Superseded by #55891.

@dependabot dependabot bot closed this Nov 5, 2025
@dependabot dependabot bot deleted the dependabot/pip/tools/taskcluster-91.1.2 branch November 5, 2025 22:03
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

ci dependencies Pull requests that update a dependency file infra python Pull requests that update Python code requirements_tests.txt

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants