From 1cfded9118165a9c6af5cf01322c7cbd378f9699 Mon Sep 17 00:00:00 2001 From: Picnic-Bot Date: Thu, 15 Jun 2023 01:14:14 +0000 Subject: [PATCH] Upgrade github/codeql-action v2.2.11 -> v2.20.0 See: - https://github.com/github/codeql-action/compare/v2.3.6...v2.20.0 - https://github.com/github/codeql-action/compare/v2.3.5...v2.3.6 - https://github.com/github/codeql-action/compare/v2.3.4...v2.3.5 - https://github.com/github/codeql-action/compare/v2.3.3...v2.3.4 - https://github.com/github/codeql-action/compare/v2.3.2...v2.3.3 - https://github.com/github/codeql-action/compare/v2.3.1...v2.3.2 - https://github.com/github/codeql-action/compare/v2.3.0...v2.3.1 - https://github.com/github/codeql-action/compare/v2.2.12...v2.3.0 - https://github.com/github/codeql-action/compare/v2.2.11...v2.2.12 --- .github/workflows/codeql.yml | 4 ++-- .github/workflows/openssf-scorecard.yml | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 9456ab1700d..7ee079fa654 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -32,13 +32,13 @@ jobs: distribution: temurin cache: maven - name: Initialize CodeQL - uses: github/codeql-action/init@v2.2.11 + uses: github/codeql-action/init@6c089f53dd51dc3fc7e599c3cb5356453a52ca9e # v2.20.0 with: languages: ${{ matrix.language }} - name: Perform minimal build if: matrix.language == 'java' run: mvn -T1C clean install -DskipTests -Dverification.skip - name: Perform CodeQL analysis - uses: github/codeql-action/analyze@v2.2.11 + uses: github/codeql-action/analyze@6c089f53dd51dc3fc7e599c3cb5356453a52ca9e # v2.20.0 with: category: /language:${{ matrix.language }} diff --git a/.github/workflows/openssf-scorecard.yml b/.github/workflows/openssf-scorecard.yml index 202e8c170dd..6cf2bd4587b 100644 --- a/.github/workflows/openssf-scorecard.yml +++ b/.github/workflows/openssf-scorecard.yml @@ -31,6 +31,6 @@ jobs: results_format: sarif publish_results: ${{ github.ref == 'refs/heads/master' }} - name: Update GitHub's code scanning dashboard - uses: github/codeql-action/upload-sarif@v2.2.11 + uses: github/codeql-action/upload-sarif@6c089f53dd51dc3fc7e599c3cb5356453a52ca9e # v2.20.0 with: sarif_file: results.sarif