diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index ff94a4aa4..f100c0c67 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -50,7 +50,7 @@ jobs: uses: gradle/actions/setup-gradle@017a9effdb900e5b5b2fddfb590a105619dca3c3 # v4.4.2 - name: Initialize CodeQL - uses: github/codeql-action/init@df559355d593797519d70b90fc8edd5db049e7a2 # v3.29.9 + uses: github/codeql-action/init@96f518a34f7a870018057716cc4d7a5c014bd61c # v3.29.10 with: languages: ${{ matrix.language }} # using "latest" helps to keep up with the latest Kotlin support @@ -65,6 +65,6 @@ jobs: run: ./gradlew assemble --no-build-cache --no-daemon - name: Perform CodeQL analysis - uses: github/codeql-action/analyze@df559355d593797519d70b90fc8edd5db049e7a2 # v3.29.9 + uses: github/codeql-action/analyze@96f518a34f7a870018057716cc4d7a5c014bd61c # v3.29.10 with: category: "/language:${{matrix.language}}" diff --git a/.github/workflows/ossf-scorecard.yml b/.github/workflows/ossf-scorecard.yml index c41857dd7..e31e80969 100644 --- a/.github/workflows/ossf-scorecard.yml +++ b/.github/workflows/ossf-scorecard.yml @@ -52,6 +52,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard (optional). # Commenting out will disable upload of results to your repo's Code Scanning dashboard - name: "Upload to code-scanning" - uses: github/codeql-action/upload-sarif@df559355d593797519d70b90fc8edd5db049e7a2 # v3.29.9 + uses: github/codeql-action/upload-sarif@96f518a34f7a870018057716cc4d7a5c014bd61c # v3.29.10 with: sarif_file: results.sarif diff --git a/dependencyManagement/build.gradle.kts b/dependencyManagement/build.gradle.kts index 7b62e76e8..58d3e04d7 100644 --- a/dependencyManagement/build.gradle.kts +++ b/dependencyManagement/build.gradle.kts @@ -45,7 +45,7 @@ dependencies { api("com.google.code.findbugs:annotations:3.0.1u2") api("com.google.code.findbugs:jsr305:3.0.2") - api("com.uber.nullaway:nullaway:0.12.8") + api("com.uber.nullaway:nullaway:0.12.9") api("org.assertj:assertj-core:3.27.4") api("org.awaitility:awaitility:4.3.0") api("org.bouncycastle:bcpkix-jdk15on:1.70") diff --git a/disk-buffering/build.gradle.kts b/disk-buffering/build.gradle.kts index 8bae11733..b124c50ba 100644 --- a/disk-buffering/build.gradle.kts +++ b/disk-buffering/build.gradle.kts @@ -7,7 +7,7 @@ plugins { id("com.gradleup.shadow") id("me.champeau.jmh") version "0.7.3" id("ru.vyarus.animalsniffer") version "2.0.1" - id("com.squareup.wire") version "5.3.10" + id("com.squareup.wire") version "5.3.11" } description = "Exporter implementations that store signals on disk" diff --git a/opamp-client/build.gradle.kts b/opamp-client/build.gradle.kts index 528265db7..c4400d944 100644 --- a/opamp-client/build.gradle.kts +++ b/opamp-client/build.gradle.kts @@ -5,7 +5,7 @@ import java.net.URL plugins { id("otel.java-conventions") id("de.undercouch.download") version "5.6.0" - id("com.squareup.wire") version "5.3.10" + id("com.squareup.wire") version "5.3.11" } description = "Client implementation of the OpAMP spec."