diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index a2353df8..07991d39 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -31,12 +31,12 @@ jobs: uses: actions/checkout@v4.1.7 - name: Initialize CodeQL - uses: github/codeql-action/init@v3.27.0 + uses: github/codeql-action/init@v3.27.6 with: build-mode: ${{ matrix.build-mode }} languages: ${{ matrix.language }} - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@v3.27.0 + uses: github/codeql-action/analyze@v3.27.6 with: category: "/language:${{matrix.language}}" diff --git a/.github/workflows/pipeline.yaml b/.github/workflows/pipeline.yaml index c99bdd17..0b73bde5 100644 --- a/.github/workflows/pipeline.yaml +++ b/.github/workflows/pipeline.yaml @@ -82,7 +82,7 @@ jobs: run: semgrep ci --sarif --output=semgrep.sarif - name: Upload results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.25.10 + uses: github/codeql-action/upload-sarif@v3.27.6 with: sarif_file: semgrep.sarif