Skip to content

Commit e002ea6

Browse files
committed
Upgrade GitHub Actions versions for workflows dependencies:
- `actions/checkout` to v6 - `actions/setup-java` to v5 - `aquasecurity/trivy-action` to v0.33.1 - `github/codeql-action/upload-sarif` to v4 - `docker/login-action` to v3.6.0
1 parent 7ec1451 commit e002ea6

File tree

6 files changed

+27
-27
lines changed

6 files changed

+27
-27
lines changed

.github/workflows/build_test_package.yml

Lines changed: 13 additions & 13 deletions
Original file line numberDiff line numberDiff line change
@@ -22,10 +22,10 @@ jobs:
2222
if: github.event_name != 'pull_request_target'
2323

2424
steps:
25-
- uses: actions/checkout@v4
25+
- uses: actions/checkout@v6
2626

2727
- name: Set up JDK
28-
uses: actions/setup-java@v4
28+
uses: actions/setup-java@v5
2929
with:
3030
distribution: 'temurin'
3131
java-version: '23'
@@ -85,10 +85,10 @@ jobs:
8585
name: controller_tests - ${{ matrix.service.testPrefix }}
8686

8787
steps:
88-
- uses: actions/checkout@v4
88+
- uses: actions/checkout@v6
8989

9090
- name: Set up JDK
91-
uses: actions/setup-java@v4
91+
uses: actions/setup-java@v5
9292
with:
9393
distribution: 'temurin'
9494
java-version: '23'
@@ -116,10 +116,10 @@ jobs:
116116
if: github.event_name != 'pull_request_target'
117117

118118
steps:
119-
- uses: actions/checkout@v4
119+
- uses: actions/checkout@v6
120120

121121
- name: Set up JDK
122-
uses: actions/setup-java@v4
122+
uses: actions/setup-java@v5
123123
with:
124124
distribution: 'temurin'
125125
java-version: '23'
@@ -165,10 +165,10 @@ jobs:
165165
name: integration_tests - ${{ matrix.service.testPrefix }}
166166

167167
steps:
168-
- uses: actions/checkout@v4
168+
- uses: actions/checkout@v6
169169

170170
- name: Set up JDK
171-
uses: actions/setup-java@v4
171+
uses: actions/setup-java@v5
172172
with:
173173
distribution: 'temurin'
174174
java-version: '23'
@@ -205,13 +205,13 @@ jobs:
205205
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
206206

207207
steps:
208-
- uses: actions/checkout@v4
208+
- uses: actions/checkout@v6
209209
with:
210210
# Fetch all tags since Gradle project version is built upon SCM
211211
fetch-depth: 0
212212

213213
- name: Set up JDK
214-
uses: actions/setup-java@v4
214+
uses: actions/setup-java@v5
215215
with:
216216
distribution: "temurin"
217217
java-version: "23"
@@ -233,7 +233,7 @@ jobs:
233233
-Djib.to.image=com.cosmotech/cosmotech-api:${{ github.sha }}
234234
235235
- name: Run Trivy vulnerability scanner
236-
uses: aquasecurity/trivy-action@0.30.0
236+
uses: aquasecurity/trivy-action@0.33.1
237237
id: scan
238238
# Add TRIVY_DB_REPOSITORY due to ratelimit issue
239239
# https://github.com/aquasecurity/trivy-action/issues/389
@@ -252,7 +252,7 @@ jobs:
252252
output: "trivy-results.sarif"
253253

254254
- name: Upload Trivy scan results to GitHub Security tab
255-
uses: github/codeql-action/upload-sarif@v3
255+
uses: github/codeql-action/upload-sarif@v4
256256
with:
257257
sarif_file: "trivy-results.sarif"
258258

@@ -265,7 +265,7 @@ jobs:
265265
retention-days: 3
266266

267267
- name: Login to GitHub Container Registry
268-
uses: docker/login-action@v3.4.0
268+
uses: docker/login-action@v3.6.0
269269
if: ${{ github.ref == 'refs/heads/main' || startsWith(github.ref, 'refs/tags/') }}
270270
with:
271271
registry: ghcr.io

.github/workflows/doc.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -17,13 +17,13 @@ jobs:
1717
generate_and_push_doc_for_openapi:
1818
runs-on: ubuntu-latest
1919
steps:
20-
- uses: actions/checkout@v4
20+
- uses: actions/checkout@v6
2121
with:
2222
# Fetch all tags since Gradle project version is built upon SCM
2323
fetch-depth: 0
2424

2525
- name: Set up JDK
26-
uses: actions/setup-java@v4
26+
uses: actions/setup-java@v5
2727
with:
2828
distribution: 'temurin'
2929
java-version: '23'

.github/workflows/lint.yml

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -21,10 +21,10 @@ jobs:
2121
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}
2222

2323
steps:
24-
- uses: actions/checkout@v4
24+
- uses: actions/checkout@v6
2525

2626
- name: Set up JDK
27-
uses: actions/setup-java@v4
27+
uses: actions/setup-java@v5
2828
with:
2929
distribution: 'temurin'
3030
java-version: '23'
@@ -49,10 +49,10 @@ jobs:
4949
categories: ${{ steps.report-list.outputs.categories }}
5050

5151
steps:
52-
- uses: actions/checkout@v4
52+
- uses: actions/checkout@v6
5353

5454
- name: Set up JDK
55-
uses: actions/setup-java@v4
55+
uses: actions/setup-java@v5
5656
with:
5757
distribution: 'temurin'
5858
java-version: '23'
@@ -93,13 +93,13 @@ jobs:
9393

9494
steps:
9595
- name: Retrieve reports
96-
uses: actions/download-artifact@v4
96+
uses: actions/download-artifact@v6
9797
with:
9898
name: sarif-reports
9999
path: sarif
100100

101101
- name: Upload SARIF reports to GitHub Security tab
102-
uses: github/codeql-action/upload-sarif@v3
102+
uses: github/codeql-action/upload-sarif@v4
103103
with:
104104
sarif_file: 'sarif/cosmotech-${{ matrix.category }}-detekt.sarif'
105105
category: ${{ matrix.category }}

.github/workflows/openapi.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -32,10 +32,10 @@ jobs:
3232
- run-api
3333

3434
steps:
35-
- uses: actions/checkout@v4
35+
- uses: actions/checkout@v6
3636

3737
- name: Set up Java
38-
uses: actions/setup-java@v4
38+
uses: actions/setup-java@v5
3939
with:
4040
distribution: 'temurin'
4141
java-version: '23'

.github/workflows/openapi_clients.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -32,13 +32,13 @@ jobs:
3232
cancel-in-progress: false
3333

3434
steps:
35-
- uses: actions/checkout@v4
35+
- uses: actions/checkout@v6
3636
with:
3737
# Fetch all tags since Gradle project version is built upon SCM
3838
fetch-depth: 0
3939

4040
- name: Set up JDK
41-
uses: actions/setup-java@v4
41+
uses: actions/setup-java@v5
4242
with:
4343
distribution: 'temurin'
4444
java-version: '23'

.github/workflows/track_dependencies.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -10,9 +10,9 @@ jobs:
1010
dependency_track:
1111
runs-on: ubuntu-latest
1212
steps:
13-
- uses: actions/checkout@v4
13+
- uses: actions/checkout@v6
1414
- name: Set up JDK
15-
uses: actions/setup-java@v4
15+
uses: actions/setup-java@v5
1616
with:
1717
distribution: 'temurin'
1818
java-version: '23'

0 commit comments

Comments
 (0)