From 4bdde67a4cdc5d1a4b59044998f6a231d5c12526 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 13 Oct 2025 04:09:29 +0000 Subject: [PATCH] Bump github/codeql-action from 3 to 4 Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3 to 4. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](https://github.com/github/codeql-action/compare/v3...v4) --- updated-dependencies: - dependency-name: github/codeql-action dependency-version: '4' dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] --- .github/workflows/java.ci.yml | 4 ++-- .github/workflows/npm.ci.yml | 6 +++--- 2 files changed, 5 insertions(+), 5 deletions(-) diff --git a/.github/workflows/java.ci.yml b/.github/workflows/java.ci.yml index b14a1ab..be94fad 100644 --- a/.github/workflows/java.ci.yml +++ b/.github/workflows/java.ci.yml @@ -114,7 +114,7 @@ jobs: submodules: recursive - name: Install CodeQL - uses: github/codeql-action/init@v3 + uses: github/codeql-action/init@v4 with: languages: java queries: security-and-quality @@ -131,7 +131,7 @@ jobs: run: mvn compile -DskipTests --no-transfer-progress - name: CodeQL Analysis - uses: github/codeql-action/analyze@v3 + uses: github/codeql-action/analyze@v4 # https://github.com/github/codeql-action/issues/1537 if: github.event_name != 'merge_group' diff --git a/.github/workflows/npm.ci.yml b/.github/workflows/npm.ci.yml index 53efb57..faf46d8 100644 --- a/.github/workflows/npm.ci.yml +++ b/.github/workflows/npm.ci.yml @@ -137,7 +137,7 @@ jobs: submodules: recursive - name: Install CodeQL - uses: github/codeql-action/init@v3 + uses: github/codeql-action/init@v4 with: languages: javascript queries: security-and-quality @@ -153,7 +153,7 @@ jobs: run: npm i - name: CodeQL Analysis - uses: github/codeql-action/analyze@v3 + uses: github/codeql-action/analyze@v4 # https://github.com/github/codeql-action/issues/1537 if: github.event_name != 'merge_group' with: @@ -170,7 +170,7 @@ jobs: output: .sarif-results/javascript.sarif - name: Upload SARIF - uses: github/codeql-action/upload-sarif@v3 + uses: github/codeql-action/upload-sarif@v4 if: github.event_name != 'merge_group' with: sarif_file: .sarif-results/javascript.sarif