Merge pull request #1757 from intel/dependabot/github_actions/github/codeql-action-3.25.8

build(deps): bump github/codeql-action from 3.25.6 to 3.25.8
This commit is contained in:
Tuomas Katila 2024-06-09 22:31:50 +03:00 committed by GitHub
commit c105e35e82
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
3 changed files with 4 additions and 4 deletions

View File

@ -25,11 +25,11 @@ jobs:
check-latest: true check-latest: true
- name: Initialize CodeQL - name: Initialize CodeQL
uses: github/codeql-action/init@9fdb3e49720b44c48891d036bb502feb25684276 # v3 uses: github/codeql-action/init@2e230e8fe0ad3a14a340ad0815ddb96d599d2aff # v3
with: with:
languages: 'go' languages: 'go'
- name: Perform CodeQL Analysis - name: Perform CodeQL Analysis
uses: github/codeql-action/analyze@9fdb3e49720b44c48891d036bb502feb25684276 # v3 uses: github/codeql-action/analyze@2e230e8fe0ad3a14a340ad0815ddb96d599d2aff # v3
with: with:
category: "/language:go" category: "/language:go"

View File

@ -26,6 +26,6 @@ jobs:
results_format: sarif results_format: sarif
publish_results: true publish_results: true
- name: "Upload results to security" - name: "Upload results to security"
uses: github/codeql-action/upload-sarif@9fdb3e49720b44c48891d036bb502feb25684276 # v3 uses: github/codeql-action/upload-sarif@2e230e8fe0ad3a14a340ad0815ddb96d599d2aff # v3
with: with:
sarif_file: results.sarif sarif_file: results.sarif

View File

@ -110,7 +110,7 @@ jobs:
output: trivy-report.sarif output: trivy-report.sarif
- name: Upload sarif report to GitHub Security tab - name: Upload sarif report to GitHub Security tab
if: ${{ inputs.upload-to-github-security-tab }} if: ${{ inputs.upload-to-github-security-tab }}
uses: github/codeql-action/upload-sarif@9fdb3e49720b44c48891d036bb502feb25684276 # v3 uses: github/codeql-action/upload-sarif@2e230e8fe0ad3a14a340ad0815ddb96d599d2aff # v3
with: with:
sarif_file: trivy-report.sarif sarif_file: trivy-report.sarif
- name: Convert report to csv - name: Convert report to csv