Merge pull request #3486 from fluxcd/dependabot/github_actions/github/codeql-action-2.1.38
Bump github/codeql-action from 2.1.37 to 2.1.38
This commit is contained in:
8
.github/workflows/scan.yaml
vendored
8
.github/workflows/scan.yaml
vendored
@@ -45,7 +45,7 @@ jobs:
|
||||
with:
|
||||
args: --sarif-file-output=snyk.sarif
|
||||
- name: Upload result to GitHub Code Scanning
|
||||
uses: github/codeql-action/upload-sarif@959cbb7472c4d4ad70cdfe6f4976053fe48ab394 # v2
|
||||
uses: github/codeql-action/upload-sarif@515828d97454b8354517688ddc5b48402b723750 # v2
|
||||
with:
|
||||
sarif_file: snyk.sarif
|
||||
|
||||
@@ -62,10 +62,10 @@ jobs:
|
||||
with:
|
||||
go-version: 1.19.x
|
||||
- name: Initialize CodeQL
|
||||
uses: github/codeql-action/init@959cbb7472c4d4ad70cdfe6f4976053fe48ab394 # v2
|
||||
uses: github/codeql-action/init@515828d97454b8354517688ddc5b48402b723750 # v2
|
||||
with:
|
||||
languages: go
|
||||
- name: Autobuild
|
||||
uses: github/codeql-action/autobuild@959cbb7472c4d4ad70cdfe6f4976053fe48ab394 # v2
|
||||
uses: github/codeql-action/autobuild@515828d97454b8354517688ddc5b48402b723750 # v2
|
||||
- name: Perform CodeQL Analysis
|
||||
uses: github/codeql-action/analyze@959cbb7472c4d4ad70cdfe6f4976053fe48ab394 # v2
|
||||
uses: github/codeql-action/analyze@515828d97454b8354517688ddc5b48402b723750 # v2
|
||||
|
||||
Reference in New Issue
Block a user