From e550bd7204d076617b0dca55b0792e1789e0aa9e Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Tue, 10 Dec 2024 16:48:24 +0000 Subject: [PATCH] Update github/codeql-action action to v3.27.7 --- .github/workflows/docker-build-push.yml | 4 ++-- .github/workflows/hadolint.yml | 2 +- .github/workflows/pr.yml | 4 ++-- .github/workflows/trivy.yml | 2 +- 4 files changed, 6 insertions(+), 6 deletions(-) diff --git a/.github/workflows/docker-build-push.yml b/.github/workflows/docker-build-push.yml index 62703074..821bd0f0 100644 --- a/.github/workflows/docker-build-push.yml +++ b/.github/workflows/docker-build-push.yml @@ -81,7 +81,7 @@ jobs: sed -i 's/\\u0026#39;/\x27/g' scan-results/trivy-${{ inputs.variant }}-image-scan-low.sarif - name: Upload Trivy low severity cases scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.27.6 + uses: github/codeql-action/upload-sarif@v3.27.7 with: sarif_file: scan-results/trivy-${{ inputs.variant }}-image-scan-low.sarif category: ${{ inputs.variant }}-image-scan-low-cases @@ -109,7 +109,7 @@ jobs: sed -i 's/\\u0026#39;/\x27/g' scan-results/trivy-${{ inputs.variant }}-image-scan.sarif - name: Upload Trivy scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.27.6 + uses: github/codeql-action/upload-sarif@v3.27.7 if: always() with: # Path to SARIF file relative to the root of the repository diff --git a/.github/workflows/hadolint.yml b/.github/workflows/hadolint.yml index ab067a8a..c4f2644c 100644 --- a/.github/workflows/hadolint.yml +++ b/.github/workflows/hadolint.yml @@ -28,7 +28,7 @@ jobs: output-file: ${{ inputs.dockerfile }}.sarif - name: Upload Hadolint results of ${{ inputs.dockerfile }} - uses: github/codeql-action/upload-sarif@v3.27.6 + uses: github/codeql-action/upload-sarif@v3.27.7 with: # Path to SARIF file relative to the root of the repository sarif_file: ${{ inputs.dockerfile }}.sarif diff --git a/.github/workflows/pr.yml b/.github/workflows/pr.yml index eddbb3e2..74c8db4d 100644 --- a/.github/workflows/pr.yml +++ b/.github/workflows/pr.yml @@ -68,7 +68,7 @@ jobs: sed -i 's/\\u0026#39;/\x27/g' scan-results/trivy-${{ inputs.variant }}-image-scan-low.sarif - name: Upload Trivy low severity cases scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.27.6 + uses: github/codeql-action/upload-sarif@v3.27.7 with: sarif_file: scan-results/trivy-${{ inputs.variant }}-image-scan-low.sarif category: ${{ inputs.variant }}-image-scan-low-cases @@ -96,7 +96,7 @@ jobs: sed -i 's/\\u0026#39;/\x27/g' scan-results/trivy-${{ inputs.variant }}-image-scan.sarif - name: Upload Trivy scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.27.6 + uses: github/codeql-action/upload-sarif@v3.27.7 if: always() with: # Path to SARIF file relative to the root of the repository diff --git a/.github/workflows/trivy.yml b/.github/workflows/trivy.yml index 75a8490f..322a756b 100644 --- a/.github/workflows/trivy.yml +++ b/.github/workflows/trivy.yml @@ -34,7 +34,7 @@ jobs: TRIVY_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-db,aquasec/trivy-db,ghcr.io/aquasecurity/trivy-db - name: Upload Trivy scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.27.6 + uses: github/codeql-action/upload-sarif@v3.27.7 with: # Path to SARIF file relative to the root of the repository sarif_file: trivy-repository-scan.sarif