From f0b4a24707b59380be534d1bcb6467361789bf7d Mon Sep 17 00:00:00 2001 From: Picnic-DevPla-Bot Date: Mon, 2 Dec 2024 02:20:22 +0000 Subject: [PATCH] Upgrade CodeQL v3.25.1 -> v3.27.5 See: - https://github.com/github/codeql-action/blob/main/CHANGELOG.md - https://github.com/github/codeql-action/releases/tag/v3.27.5 - https://github.com/github/codeql-action/releases/tag/v3.27.4 - https://github.com/github/codeql-action/releases/tag/v3.27.3 - https://github.com/github/codeql-action/releases/tag/v3.27.2 - https://github.com/github/codeql-action/releases/tag/v3.27.1 - https://github.com/github/codeql-action/releases/tag/v3.27.0 - https://github.com/github/codeql-action/releases/tag/v3.26.13 - https://github.com/github/codeql-action/releases/tag/v3.26.12 - https://github.com/github/codeql-action/releases/tag/v3.26.11 - https://github.com/github/codeql-action/releases/tag/v3.26.10 - https://github.com/github/codeql-action/releases/tag/v3.26.9 - https://github.com/github/codeql-action/releases/tag/v3.26.8 - https://github.com/github/codeql-action/releases/tag/v3.26.7 - https://github.com/github/codeql-action/releases/tag/v3.26.6 - https://github.com/github/codeql-action/releases/tag/v3.26.5 - https://github.com/github/codeql-action/releases/tag/v3.26.4 - https://github.com/github/codeql-action/releases/tag/v3.26.3 - https://github.com/github/codeql-action/releases/tag/v3.26.2 - https://github.com/github/codeql-action/releases/tag/v3.26.1 - https://github.com/github/codeql-action/releases/tag/v3.26.0 - https://github.com/github/codeql-action/releases/tag/v3.25.15 - https://github.com/github/codeql-action/releases/tag/v3.25.14 - https://github.com/github/codeql-action/releases/tag/v3.25.13 - https://github.com/github/codeql-action/releases/tag/v3.25.12 - https://github.com/github/codeql-action/releases/tag/v3.25.11 - https://github.com/github/codeql-action/releases/tag/v3.25.10 - https://github.com/github/codeql-action/releases/tag/v3.25.9 - https://github.com/github/codeql-action/releases/tag/v3.25.8 - https://github.com/github/codeql-action/releases/tag/v3.25.7 - https://github.com/github/codeql-action/releases/tag/v3.25.6 - https://github.com/github/codeql-action/releases/tag/v3.25.5 - https://github.com/github/codeql-action/releases/tag/v3.25.4 - https://github.com/github/codeql-action/releases/tag/v3.25.3 - https://github.com/github/codeql-action/releases/tag/v3.25.2 --- .github/workflows/codeql.yml | 4 ++-- .github/workflows/openssf-scorecard.yml | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 00461690e6..2007a0efef 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -40,13 +40,13 @@ jobs: java-distribution: temurin maven-version: 3.9.9 - name: Initialize CodeQL - uses: github/codeql-action/init@c7f9125735019aa87cfc361530512d50ea439c71 # v3.25.1 + uses: github/codeql-action/init@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3.27.5 with: languages: ${{ matrix.language }} - name: Perform minimal build if: matrix.language == 'java' run: mvn -T1C clean package -DskipTests -Dverification.skip - name: Perform CodeQL analysis - uses: github/codeql-action/analyze@c7f9125735019aa87cfc361530512d50ea439c71 # v3.25.1 + uses: github/codeql-action/analyze@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3.27.5 with: category: /language:${{ matrix.language }} diff --git a/.github/workflows/openssf-scorecard.yml b/.github/workflows/openssf-scorecard.yml index 5d2ea81707..6586dd9799 100644 --- a/.github/workflows/openssf-scorecard.yml +++ b/.github/workflows/openssf-scorecard.yml @@ -48,6 +48,6 @@ jobs: results_format: sarif publish_results: ${{ github.ref == 'refs/heads/master' }} - name: Update GitHub's code scanning dashboard - uses: github/codeql-action/upload-sarif@c7f9125735019aa87cfc361530512d50ea439c71 # v3.25.1 + uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3.27.5 with: sarif_file: results.sarif