Skip to content

Commit f862e61

Browse files
ci: bump the github-actions group with 5 updates
Bumps the github-actions group with 5 updates: | Package | From | To | | --- | --- | --- | | [actions/checkout](https://github.com/actions/checkout) | `4` | `6` | | [github/codeql-action](https://github.com/github/codeql-action) | `3` | `4` | | [actions/setup-node](https://github.com/actions/setup-node) | `4` | `6` | | [actions/setup-java](https://github.com/actions/setup-java) | `4` | `5` | | [actions/upload-artifact](https://github.com/actions/upload-artifact) | `4` | `5` | Updates `actions/checkout` from 4 to 6 - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@v4...v6) Updates `github/codeql-action` from 3 to 4 - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@v3...v4) Updates `actions/setup-node` from 4 to 6 - [Release notes](https://github.com/actions/setup-node/releases) - [Commits](actions/setup-node@v4...v6) Updates `actions/setup-java` from 4 to 5 - [Release notes](https://github.com/actions/setup-java/releases) - [Commits](actions/setup-java@v4...v5) Updates `actions/upload-artifact` from 4 to 5 - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@v4...v5) --- updated-dependencies: - dependency-name: actions/checkout dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: github/codeql-action dependency-version: '4' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/setup-node dependency-version: '6' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/setup-java dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions - dependency-name: actions/upload-artifact dependency-version: '5' dependency-type: direct:production update-type: version-update:semver-major dependency-group: github-actions ... Signed-off-by: dependabot[bot] <support@github.com>
1 parent de7496b commit f862e61

3 files changed

Lines changed: 18 additions & 18 deletions

File tree

.github/workflows/codeql.yml

Lines changed: 3 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -30,15 +30,15 @@ jobs:
3030

3131
steps:
3232
- name: Checkout repository
33-
uses: actions/checkout@v4
33+
uses: actions/checkout@v6
3434

3535
- name: Initialize CodeQL
36-
uses: github/codeql-action/init@v3
36+
uses: github/codeql-action/init@v4
3737
with:
3838
languages: javascript-typescript
3939
queries: security-extended
4040

4141
- name: Perform CodeQL Analysis
42-
uses: github/codeql-action/analyze@v3
42+
uses: github/codeql-action/analyze@v4
4343
with:
4444
category: "/language:javascript-typescript"

.github/workflows/dependency-review.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,7 @@ jobs:
2020
runs-on: ubuntu-latest
2121
steps:
2222
- name: Checkout Repository
23-
uses: actions/checkout@v4
23+
uses: actions/checkout@v6
2424

2525
- name: Dependency Review
2626
uses: actions/dependency-review-action@v4
@@ -43,10 +43,10 @@ jobs:
4343
runs-on: ubuntu-latest
4444
steps:
4545
- name: Checkout Repository
46-
uses: actions/checkout@v4
46+
uses: actions/checkout@v6
4747

4848
- name: Setup Node.js
49-
uses: actions/setup-node@v4
49+
uses: actions/setup-node@v6
5050
with:
5151
node-version: '20'
5252

@@ -72,10 +72,10 @@ jobs:
7272
runs-on: ubuntu-latest
7373
steps:
7474
- name: Checkout Repository
75-
uses: actions/checkout@v4
75+
uses: actions/checkout@v6
7676

7777
- name: Setup Java
78-
uses: actions/setup-java@v4
78+
uses: actions/setup-java@v5
7979
with:
8080
distribution: 'temurin'
8181
java-version: '21'

.github/workflows/security-pipeline.yml

Lines changed: 10 additions & 10 deletions
Original file line numberDiff line numberDiff line change
@@ -46,7 +46,7 @@ jobs:
4646
runs-on: ubuntu-latest
4747
steps:
4848
- name: Checkout Repository
49-
uses: actions/checkout@v4
49+
uses: actions/checkout@v6
5050
with:
5151
fetch-depth: 0
5252

@@ -71,10 +71,10 @@ jobs:
7171
runs-on: ubuntu-latest
7272
steps:
7373
- name: Checkout Repository
74-
uses: actions/checkout@v4
74+
uses: actions/checkout@v6
7575

7676
- name: Setup Node.js
77-
uses: actions/setup-node@v4
77+
uses: actions/setup-node@v6
7878
with:
7979
node-version: ${{ env.NODE_VERSION }}
8080

@@ -94,7 +94,7 @@ jobs:
9494
continue-on-error: true
9595

9696
- name: Upload Audit Results
97-
uses: actions/upload-artifact@v4
97+
uses: actions/upload-artifact@v5
9898
if: always()
9999
with:
100100
name: npm-audit-results
@@ -111,7 +111,7 @@ jobs:
111111
image: semgrep/semgrep
112112
steps:
113113
- name: Checkout Repository
114-
uses: actions/checkout@v4
114+
uses: actions/checkout@v6
115115

116116
- name: Run Semgrep
117117
run: |
@@ -129,7 +129,7 @@ jobs:
129129
. || true
130130
131131
- name: Upload Semgrep Results
132-
uses: github/codeql-action/upload-sarif@v3
132+
uses: github/codeql-action/upload-sarif@v4
133133
if: always()
134134
with:
135135
sarif_file: semgrep-results.sarif
@@ -143,7 +143,7 @@ jobs:
143143
runs-on: ubuntu-latest
144144
steps:
145145
- name: Checkout Repository
146-
uses: actions/checkout@v4
146+
uses: actions/checkout@v6
147147

148148
- name: Checkov Scan
149149
uses: bridgecrewio/checkov-action@v12
@@ -156,7 +156,7 @@ jobs:
156156
skip_check: CKV_AWS_79,CKV_AWS_18
157157

158158
- name: Upload Checkov Results
159-
uses: github/codeql-action/upload-sarif@v3
159+
uses: github/codeql-action/upload-sarif@v4
160160
if: always()
161161
with:
162162
sarif_file: checkov-results.sarif
@@ -171,7 +171,7 @@ jobs:
171171
if: github.event_name != 'pull_request'
172172
steps:
173173
- name: Checkout Repository
174-
uses: actions/checkout@v4
174+
uses: actions/checkout@v6
175175

176176
- name: Trivy Filesystem Scan
177177
uses: aquasecurity/trivy-action@master
@@ -184,7 +184,7 @@ jobs:
184184
ignore-unfixed: true
185185

186186
- name: Upload Trivy Results
187-
uses: github/codeql-action/upload-sarif@v3
187+
uses: github/codeql-action/upload-sarif@v4
188188
if: always()
189189
with:
190190
sarif_file: trivy-fs-results.sarif

0 commit comments

Comments
 (0)