This release keeps dependencies and maintenance posture current for teams operating this tool.
✓ No known CVEs patched in this version
ReleasePort's take
Light signalThe v0.4.6 release bumps several GitHub Actions dependencies (actions/setup-go 5→6, goreleaser/goreleaser-action 6→7, actions/checkout 4→6) and migrates Homebrew goreleaser brews to homebrew_casks while adding Dependabot support for Go modules and workflows.
Why it matters: Update dependent GitHub Actions workflows to the new versions (setup-go 6, goreleaser-action 7, checkout 6) and migrate any Homebrew goreleaser formulas before next quarterly upgrade; enable Dependabot config for automated gomod updates.
Summary
AI summaryMinor fixes and improvements.
Changes in this release
| Type | Severity | Summary | CVE |
|---|---|---|---|
| Feature | Medium |
Add Dependabot config for gomod and GitHub Actions Add Dependabot config for gomod and GitHub Actions Source: llm_adapter@2026-05-21 Confidence: low |
— |
| Dependency | Medium |
Bump actions/setup-go from 5 to 6 Bump actions/setup-go from 5 to 6 Source: llm_adapter@2026-05-21 Confidence: high |
— |
| Dependency | Medium |
Bump goreleaser/goreleaser-action from 6 to 7 Bump goreleaser/goreleaser-action from 6 to 7 Source: llm_adapter@2026-05-21 Confidence: high |
— |
| Dependency | Medium |
Bump actions/checkout from 4 to 6 Bump actions/checkout from 4 to 6 Source: llm_adapter@2026-05-21 Confidence: high |
— |
| Refactor | Medium |
Migrate goreleaser brews to homebrew_casks Migrate goreleaser brews to homebrew_casks Source: llm_adapter@2026-05-21 Confidence: low |
— |
Full changelog
Changelog
- 04c5ec139fcdc38c8f98ce2d7e8594d3e1a92bd6 Migrate goreleaser brews to homebrew_casks
- 7bc7990f6c9d2e4c521efff91902967d26dc34aa Bump actions/setup-go from 5 to 6 (#27)
- afa5995dde5174e9bbacae6c73d8bdcbc84826fc Bump goreleaser/goreleaser-action from 6 to 7 (#25)
- 8cb9652ee2f9cac0564bcbad7c59ad63e7a015d3 Bump actions/checkout from 4 to 6 (#26)
- 763f598e6ff664c91d9a133460b9eb3535d7b79f Add Dependabot config for gomod and GitHub Actions
Weekly OSS security release digest.
The CVE patches and breaking changes that affected production tools this week. One email, every Sunday.
No spam, unsubscribe anytime.
Share this release
Track Vim file browser that runs in separate terminal
Get notified when new releases ship.
Sign up freeAbout Vim file browser that runs in separate terminal
All releases →Related context
Related tools
Beta — feedback welcome: [email protected]