File tree Expand file tree Collapse file tree 3 files changed +5
-5
lines changed Expand file tree Collapse file tree 3 files changed +5
-5
lines changed Original file line number Diff line number Diff line change 4242 maven-
4343
4444 - name : ' Initialize CodeQL'
45- uses : github/codeql-action/init@v3
45+ uses : github/codeql-action/init@v4
4646 with :
4747 languages : ${{ matrix.language }}
4848 # If you wish to specify custom queries, you can do so here or in a config file.
7070 mvn clean install -Dmaven.test.skip=true -Ddocker.skip=true -Dtest.onlyITs= -B -V -e -fae -q -DskipQA=true
7171
7272 - name : ' Perform CodeQL Analysis'
73- uses : github/codeql-action/analyze@v3
73+ uses : github/codeql-action/analyze@v4
7474 with :
7575 category : " /language:${{ matrix.language }}"
7676 upload : false
8989 output : " sarif-results/${{ matrix.language }}.sarif"
9090
9191 - name : ' Upload sarif files'
92- uses : github/codeql-action/upload-sarif@v3
92+ uses : github/codeql-action/upload-sarif@v4
9393 with :
9494 sarif_file : " sarif-results/${{ matrix.language }}.sarif"
9595
Original file line number Diff line number Diff line change 3333 run : mvn -U package -DnvdApiKey=${{ secrets.NVD_API_KEY }} -Dmaven.test.skip=true -Ddocker.skip=true -Dtest.onlyITs= -DskipQA=true org.owasp:dependency-check-maven:aggregate -fae -B -Dorg.slf4j.simpleLogger.defaultLogLevel=WARN -DfailBuildOnCVSS=5
3434
3535 - name : ' Upload result to GitHub Code Scanning'
36- uses : github/codeql-action/upload-sarif@v3
36+ uses : github/codeql-action/upload-sarif@v4
3737 with :
3838 sarif_file : target/dependency-check-report.sarif
Original file line number Diff line number Diff line change 6363 files : " ${{ matrix.docker-image }}-trivy-results.sarif"
6464
6565 - name : ' Upload Trivy scan results to GitHub Security tab'
66- uses : github/codeql-action/upload-sarif@v3
66+ uses : github/codeql-action/upload-sarif@v4
6767 if : steps.check_files.outputs.files_exists == 'true'
6868 with :
6969 sarif_file : " ${{ matrix.docker-image }}-trivy-results.sarif"
You can’t perform that action at this time.
0 commit comments