Skip to content

Commit 7c71894

Browse files
Upgrade: [dependabot] - bump SonarSource/sonarqube-scan-action from 6.0.0 to 7.0.0 (#32)
Bumps [SonarSource/sonarqube-scan-action](https://github.com/sonarsource/sonarqube-scan-action) from 6.0.0 to 7.0.0. <details> <summary>Release notes</summary> <p><em>Sourced from <a href="https://github.com/sonarsource/sonarqube-scan-action/releases">SonarSource/sonarqube-scan-action's releases</a>.</em></p> <blockquote> <h2>v7.0.0</h2> <h2>What's Changed</h2> <ul> <li>SQSCANGHA-120 NO-JIRA Bump actions/setup-node from 4 to 5 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/SonarSource/sonarqube-scan-action/pull/211">SonarSource/sonarqube-scan-action#211</a></li> <li>Update SonarScanner CLI to 7.3.0.5189 by <a href="https://github.com/github-actions"><code>@​github-actions</code></a>[bot] in <a href="https://redirect.github.com/SonarSource/sonarqube-scan-action/pull/212">SonarSource/sonarqube-scan-action#212</a></li> <li>SQSCANGHA-122 Include caveats for running SCA by <a href="https://github.com/subdavis"><code>@​subdavis</code></a> in <a href="https://redirect.github.com/SonarSource/sonarqube-scan-action/pull/213">SonarSource/sonarqube-scan-action#213</a></li> <li>SQSCANGHA-123 NO-JIRA Bump actions/setup-node from 5 to 6 by <a href="https://github.com/dependabot"><code>@​dependabot</code></a>[bot] in <a href="https://redirect.github.com/SonarSource/sonarqube-scan-action/pull/214">SonarSource/sonarqube-scan-action#214</a></li> <li>SQSCANGHA-126 Update SonarScanner CLI to 8.0.1.6346 by <a href="https://github.com/github-actions"><code>@​github-actions</code></a>[bot] in <a href="https://redirect.github.com/SonarSource/sonarqube-scan-action/pull/218">SonarSource/sonarqube-scan-action#218</a></li> </ul> <h2>New Contributors</h2> <ul> <li><a href="https://github.com/subdavis"><code>@​subdavis</code></a> made their first contribution in <a href="https://redirect.github.com/SonarSource/sonarqube-scan-action/pull/213">SonarSource/sonarqube-scan-action#213</a></li> </ul> <p><strong>Full Changelog</strong>: <a href="https://github.com/SonarSource/sonarqube-scan-action/compare/v6.0.0...v7.0.0">https://github.com/SonarSource/sonarqube-scan-action/compare/v6.0.0...v7.0.0</a></p> </blockquote> </details> <details> <summary>Commits</summary> <ul> <li><a href="https://github.com/SonarSource/sonarqube-scan-action/commit/a31c9398be7ace6bbfaf30c0bd5d415f843d45e9"><code>a31c939</code></a> SQSCANGHA-126 Update SonarScanner CLI to 8.0.1.6346 (<a href="https://redirect.github.com/sonarsource/sonarqube-scan-action/issues/218">#218</a>)</li> <li><a href="https://github.com/SonarSource/sonarqube-scan-action/commit/40f5b61913e891f9d316696628698051136015be"><code>40f5b61</code></a> SQSCANGHA-123 NO-JIRA Bump actions/setup-node from 5 to 6 (<a href="https://redirect.github.com/sonarsource/sonarqube-scan-action/issues/214">#214</a>)</li> <li><a href="https://github.com/SonarSource/sonarqube-scan-action/commit/9bf7c126a1c17f11278a5c55416b867a27a73d5e"><code>9bf7c12</code></a> SQSCANGHA-122 Include caveats for running SCA (<a href="https://redirect.github.com/sonarsource/sonarqube-scan-action/issues/213">#213</a>)</li> <li><a href="https://github.com/SonarSource/sonarqube-scan-action/commit/ba6563cca79df854af1350ec3dc5881313ec2d3c"><code>ba6563c</code></a> Update SonarScanner CLI to 7.3.0.5189 (<a href="https://redirect.github.com/sonarsource/sonarqube-scan-action/issues/212">#212</a>)</li> <li><a href="https://github.com/SonarSource/sonarqube-scan-action/commit/5ffbad44543237d1b339a5ed57a774432e19f3e4"><code>5ffbad4</code></a> SQSCANGHA-120 Bump actions/setup-node from 4 to 5 (<a href="https://redirect.github.com/sonarsource/sonarqube-scan-action/issues/211">#211</a>)</li> <li>See full diff in <a href="https://github.com/sonarsource/sonarqube-scan-action/compare/fd88b7d7ccbaefd23d8f36f73b59db7a3d246602...a31c9398be7ace6bbfaf30c0bd5d415f843d45e9">compare view</a></li> </ul> </details> <br /> [![Dependabot compatibility score](https://dependabot-badges.githubapp.com/badges/compatibility_score?dependency-name=SonarSource/sonarqube-scan-action&package-manager=github_actions&previous-version=6.0.0&new-version=7.0.0)](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. [//]: # (dependabot-automerge-start) [//]: # (dependabot-automerge-end) --- <details> <summary>Dependabot commands and options</summary> <br /> You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot show <dependency name> ignore conditions` will show all of the ignore conditions of the specified dependency - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) </details> Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
1 parent 4192cd0 commit 7c71894

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

.github/workflows/quality-checks.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -187,7 +187,7 @@ jobs:
187187
run: mvn sonar:sonar -Dsonar.login=${{ secrets.SONAR_TOKEN }}
188188

189189
- name: SonarCloud Scan
190-
uses: SonarSource/sonarqube-scan-action@fd88b7d7ccbaefd23d8f36f73b59db7a3d246602
190+
uses: SonarSource/sonarqube-scan-action@a31c9398be7ace6bbfaf30c0bd5d415f843d45e9
191191
if: ${{ steps.check_java.outputs.uses_java == 'false' && env.SONAR_TOKEN_EXISTS == 'true' }}
192192
env:
193193
GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}

0 commit comments

Comments
 (0)