From 6061c1fd88a1cba982de7922e347bc0d2d2df735 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Thu, 8 Oct 2026 13:17:41 +0000 Subject: [PATCH] Bump the codeql-action group with 3 updates Bumps the codeql-action group with 3 updates: [github/codeql-action/init](https://github.com/github/codeql-action), [github/codeql-action/analyze](https://github.com/github/codeql-action) and [github/codeql-action/upload-sarif](https://github.com/github/codeql-action). Updates `github/codeql-action/init` from d8251b8572db9671915a70de606ed39bc2259c91 to e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/d8251b8572db9671915a70de606ed39bc2259c91...e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b) Updates `github/codeql-action/analyze` from d8251b8572db9671915a70de606ed39bc2259c91 to e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/d8251b8572db9671915a70de606ed39bc2259c91...e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b) Updates `github/codeql-action/upload-sarif` from d8251b8572db9671915a70de606ed39bc2259c91 to e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/d8251b8572db9671915a70de606ed39bc2259c91...e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b) --- updated-dependencies: - dependency-name: github/codeql-action/init dependency-version: e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b dependency-type: direct:production dependency-group: codeql-action - dependency-name: github/codeql-action/analyze dependency-version: e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b dependency-type: direct:production dependency-group: codeql-action - dependency-name: github/codeql-action/upload-sarif dependency-version: e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b dependency-type: direct:production dependency-group: codeql-action ... Signed-off-by: dependabot[bot] --- .github/workflows/codeql.yml | 4 ++-- .github/workflows/main.yml | 2 +- 2 files changed, 3 insertions(+), 3 deletions(-) diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 7a1a7949869..f6cff49f759 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -28,11 +28,11 @@ jobs: uses: actions/checkout@3d3c42e5aac5ba805825da76410c181273ba90b1 # v7.0.1 - name: Initialize CodeQL - uses: github/codeql-action/init@d8251b8572db9671915a70de606ed39bc2259c91 # main + uses: github/codeql-action/init@e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b # main with: languages: ${{ matrix.language }} config-file: ./.github/codeql/codeql-config.yml tools: nightly - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@d8251b8572db9671915a70de606ed39bc2259c91 # main + uses: github/codeql-action/analyze@e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b # main diff --git a/.github/workflows/main.yml b/.github/workflows/main.yml index 40a60884b98..5c01491562e 100644 --- a/.github/workflows/main.yml +++ b/.github/workflows/main.yml @@ -111,7 +111,7 @@ jobs: - name: Upload ESLint results to Code Scanning if: "${{ !cancelled() && !startsWith(github.head_ref, 'dependabot/')}}" - uses: github/codeql-action/upload-sarif@d8251b8572db9671915a70de606ed39bc2259c91 # main + uses: github/codeql-action/upload-sarif@e0b52dbdc5c3376dd8cb78e956fd23fa07ca2c5b # main with: sarif_file: extensions/ql-vscode/build/eslint.sarif category: eslint