|
38 | 38 | exit-code: '0' |
39 | 39 |
|
40 | 40 | - name: Upload Trivy results to GitHub Security |
41 | | - uses: github/codeql-action/upload-sarif@v3 |
| 41 | + uses: github/codeql-action/upload-sarif@v4 |
42 | 42 | with: |
43 | 43 | sarif_file: 'trivy-code-results.sarif' |
44 | 44 | category: 'code-scan' |
@@ -123,7 +123,7 @@ jobs: |
123 | 123 |
|
124 | 124 | - name: Upload container scan results |
125 | 125 | if: steps.pull-image.outputs.image_exists == 'true' && (success() || failure()) |
126 | | - uses: github/codeql-action/upload-sarif@v3 |
| 126 | + uses: github/codeql-action/upload-sarif@v4 |
127 | 127 | with: |
128 | 128 | sarif_file: 'trivy-${{ matrix.component }}.sarif' |
129 | 129 | category: 'container-${{ matrix.component }}' |
@@ -154,16 +154,16 @@ jobs: |
154 | 154 | uses: actions/checkout@v4 |
155 | 155 |
|
156 | 156 | - name: Initialize CodeQL |
157 | | - uses: github/codeql-action/init@v3 |
| 157 | + uses: github/codeql-action/init@v4 |
158 | 158 | with: |
159 | 159 | languages: ${{ matrix.language }} |
160 | 160 | queries: security-extended,security-and-quality |
161 | 161 |
|
162 | 162 | - name: Autobuild |
163 | | - uses: github/codeql-action/autobuild@v3 |
| 163 | + uses: github/codeql-action/autobuild@v4 |
164 | 164 |
|
165 | 165 | - name: Perform CodeQL Analysis |
166 | | - uses: github/codeql-action/analyze@v3 |
| 166 | + uses: github/codeql-action/analyze@v4 |
167 | 167 | with: |
168 | 168 | category: "/language:${{ matrix.language }}" |
169 | 169 |
|
|
0 commit comments