From cbd7f7861170d7b2b980d1a2f3257ef67e3ce784 Mon Sep 17 00:00:00 2001 From: "renovate[bot]" <29139614+renovate[bot]@users.noreply.github.com> Date: Fri, 13 Dec 2024 02:21:02 +0000 Subject: [PATCH] :arrow_up: Update Update github/codeql-action digest to df409f7 --- .github/workflows/release-arm.yaml | 8 ++++---- .github/workflows/release.yaml | 4 ++-- .github/workflows/reusable-build-flavor.yaml | 4 ++-- .github/workflows/reusable-docker-arm-build.yaml | 4 ++-- 4 files changed, 10 insertions(+), 10 deletions(-) diff --git a/.github/workflows/release-arm.yaml b/.github/workflows/release-arm.yaml index fb14f686d..ef1a93373 100644 --- a/.github/workflows/release-arm.yaml +++ b/.github/workflows/release-arm.yaml @@ -218,13 +218,13 @@ jobs: sudo mv build/*trivy.sarif trivy-sarif/ sudo mv build/*grype.sarif grype-sarif/ - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 if: startsWith(github.ref, 'refs/tags/') with: sarif_file: 'trivy-sarif' category: ${{ matrix.flavor }}-trivy - name: Upload Grype scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 if: startsWith(github.ref, 'refs/tags/') with: sarif_file: 'grype-sarif' @@ -319,13 +319,13 @@ jobs: sudo mv build/*grype.sarif grype-sarif/ - name: Upload Trivy scan results to GitHub Security tab if: startsWith(github.ref, 'refs/tags/') - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 with: sarif_file: 'trivy-sarif' category: ${{ matrix.flavor }}-trivy - name: Upload Grype scan results to GitHub Security tab if: startsWith(github.ref, 'refs/tags/') - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 with: sarif_file: 'grype-sarif' category: ${{ matrix.flavor }}-grype diff --git a/.github/workflows/release.yaml b/.github/workflows/release.yaml index e057fd1a0..042469f6e 100644 --- a/.github/workflows/release.yaml +++ b/.github/workflows/release.yaml @@ -212,13 +212,13 @@ jobs: files: | release/* - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 if: startsWith(github.ref, 'refs/tags/') with: sarif_file: 'trivy-sarif' category: ${{ matrix.flavor }}-trivy - name: Upload Grype scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 if: startsWith(github.ref, 'refs/tags/') with: sarif_file: 'grype-sarif' diff --git a/.github/workflows/reusable-build-flavor.yaml b/.github/workflows/reusable-build-flavor.yaml index abc048aa7..c3c97ee90 100644 --- a/.github/workflows/reusable-build-flavor.yaml +++ b/.github/workflows/reusable-build-flavor.yaml @@ -143,13 +143,13 @@ jobs: sudo mv *grype.sarif grype-results/ - name: Upload Trivy scan results to GitHub Security tab if: ${{ github.event_name == 'push' && github.ref == 'refs/heads/master' }} - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 with: sarif_file: 'trivy-results' category: ${{ inputs.flavor }}-${{ inputs.flavor_release }}-trivy - name: Upload Grype scan results to GitHub Security tab if: ${{ github.event_name == 'push' && github.ref == 'refs/heads/master' }} - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 with: sarif_file: 'grype-results' category: ${{ inputs.flavor }}-${{ inputs.flavor_release }}-grype diff --git a/.github/workflows/reusable-docker-arm-build.yaml b/.github/workflows/reusable-docker-arm-build.yaml index 1334f7283..661b5b092 100644 --- a/.github/workflows/reusable-docker-arm-build.yaml +++ b/.github/workflows/reusable-docker-arm-build.yaml @@ -155,13 +155,13 @@ jobs: sudo mv build/*trivy.sarif trivy-sarif/ sudo mv build/*grype.sarif grype-sarif/ - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 if: startsWith(github.ref, 'refs/tags/v') with: sarif_file: 'trivy-sarif' category: ${{ matrix.flavor }}-trivy - name: Upload Grype scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@f09c1c0a94de965c15400f5634aa42fac8fb8f88 # v3 + uses: github/codeql-action/upload-sarif@df409f7d9260372bd5f19e5b04e83cb3c43714ae # v3 if: startsWith(github.ref, 'refs/tags/v') with: sarif_file: 'grype-sarif'