chore(deps): bump github/codeql-action from 2 to 3
Bumps github/codeql-action from 2 to 3.
Release notes
Sourced from github/codeql-action's releases.
CodeQL Bundle v2.15.5
Bundles CodeQL CLI v2.15.5
Includes the following CodeQL language packs from
github/codeql@codeql-cli/v2.15.5:
codeql/cpp-queries(changelog, source)codeql/cpp-all(changelog, source)codeql/csharp-queries(changelog, source)codeql/csharp-all(changelog, source)codeql/go-queries(changelog, source)codeql/go-all(changelog, source)codeql/java-queries(changelog, source)codeql/java-all(changelog, source)codeql/javascript-queries(changelog, source)codeql/javascript-all(changelog, source)codeql/python-queries(changelog, source)codeql/python-all(changelog, source)codeql/ruby-queries(changelog, source)codeql/ruby-all(changelog, source)codeql/swift-queries(changelog, source)codeql/swift-all(changelog, source)CodeQL Bundle v2.15.4
Bundles CodeQL CLI v2.15.4
Includes the following CodeQL language packs from
github/codeql@codeql-cli/v2.15.4:
codeql/cpp-queries(changelog, source)codeql/cpp-all(changelog, source)codeql/csharp-queries(changelog, source)codeql/csharp-all(changelog, source)codeql/go-queries(changelog, source)codeql/go-all(changelog, source)codeql/java-queries(changelog, source)codeql/java-all(changelog, source)codeql/javascript-queries(changelog, source)codeql/javascript-all(changelog, source)codeql/python-queries(changelog, source)codeql/python-all(changelog, source)codeql/ruby-queries(changelog, source)codeql/ruby-all(changelog, source)codeql/swift-queries(changelog, source)codeql/swift-all(changelog, source)CodeQL Bundle
Bundles CodeQL CLI v2.15.3
Includes the following CodeQL language packs from
github/codeql@codeql-cli/v2.15.3:
... (truncated)
Changelog
Sourced from github/codeql-action's changelog.
3.22.12 - 22 Dec 2023
- Update default CodeQL bundle version to 2.15.5. #2047
3.22.11 - 13 Dec 2023
- [v3+ only] The CodeQL Action now runs on Node.js v20. #2006
2.22.10 - 12 Dec 2023
- Update default CodeQL bundle version to 2.15.4. #2016
2.22.9 - 07 Dec 2023
No user facing changes.
2.22.8 - 23 Nov 2023
- Update default CodeQL bundle version to 2.15.3. #2001
2.22.7 - 16 Nov 2023
- Add a deprecation warning for customers using CodeQL version 2.11.5 and earlier. These versions of CodeQL were discontinued on 8 November 2023 alongside GitHub Enterprise Server 3.7, and will be unsupported by CodeQL Action v2.23.0 and later. #1993
- If you are using one of these versions, please update to CodeQL CLI version 2.11.6 or later. For instance, if you have specified a custom version of the CLI using the 'tools' input to the 'init' Action, you can remove this input to use the default version.
- Alternatively, if you want to continue using a version of the CodeQL CLI between 2.10.5 and 2.11.5, you can replace
github/codeql-action/*@v2bygithub/codeql-action/*@v2.22.7in your code scanning workflow to ensure you continue using this version of the CodeQL Action.2.22.6 - 14 Nov 2023
- Customers running Python analysis on macOS using version 2.14.6 or earlier of the CodeQL CLI should upgrade to CodeQL CLI version 2.15.0 or later. If you do not wish to upgrade the CodeQL CLI, ensure that you are using Python version 3.11 or earlier, as CodeQL version 2.14.6 and earlier do not support Python 3.12. You can achieve this by adding a
setup-pythonstep to your code scanning workflow before the step that invokesgithub/codeql-action/init.- Update default CodeQL bundle version to 2.15.2. #1978
2.22.5 - 27 Oct 2023
No user facing changes.
2.22.4 - 20 Oct 2023
- Update default CodeQL bundle version to 2.15.1. #1953
- Users will begin to see warnings on Node.js 16 deprecation in their Actions logs on code scanning runs starting October 23, 2023.
- All code scanning workflows should continue to succeed regardless of the warning.
- The team at GitHub maintaining the CodeQL Action is aware of the deprecation timeline and actively working on creating another version of the CodeQL Action, v3, that will bump us to Node 20.
- For more information, and to communicate with the maintaining team, please use this issue.
2.22.3 - 13 Oct 2023
- Provide an authentication token when downloading the CodeQL Bundle from the API of a GitHub Enterprise Server instance. #1945
2.22.2 - 12 Oct 2023
- Update default CodeQL bundle version to 2.15.0. #1938
... (truncated)
Commits
e0c2b0achange version numbers inside processing function as well8e4a6c7improve handling of changelog processing for backports511f073Merge pull request #2033 from github/dependabot/npm_and_yarn/npm-0a98872b3debf5a83Merge pull request #2035 from github/mergeback/v3.22.11-to-main-b374143c7813bdaUpdate checked-in dependencies2b2fb6bUpdate changelog and version after v3.22.11b374143Merge pull request #2034 from github/update-v3.22.11-64e61baea95591baMerge branch 'main' into dependabot/npm_and_yarn/npm-0a98872b3de2b5cc7Update changelog for v3.22.11- See full diff in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
-
@dependabot rebasewill rebase this PR -
@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it -
@dependabot mergewill merge this PR after your CI passes on it -
@dependabot squash and mergewill squash and merge this PR after your CI passes on it -
@dependabot cancel mergewill cancel a previously requested merge and block automerging -
@dependabot reopenwill reopen this PR if it is closed -
@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually -
@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency -
@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) -
@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
Codecov Report
All modified and coverable lines are covered by tests :white_check_mark:
Comparison is base (
f46b8ec) 100.00% compared to head (9a98500) 100.00%.
:exclamation: Your organization needs to install the Codecov GitHub app to enable full functionality.
Additional details and impacted files
@@ Coverage Diff @@
## master #43 +/- ##
=========================================
Coverage 100.00% 100.00%
=========================================
Files 1 1
Lines 26 26
=========================================
Hits 26 26
| Flag | Coverage Δ | |
|---|---|---|
| go- | 100.00% <ø> (ø) |
|
| go-1.18 | 100.00% <ø> (ø) |
|
| go-1.19 | 100.00% <ø> (ø) |
|
| go-1.20 | 100.00% <ø> (ø) |
|
| macos-latest | 100.00% <ø> (ø) |
|
| ubuntu-latest | 100.00% <ø> (ø) |
Flags with carried forward coverage won't be shown. Click here to find out more.
:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.
OK, I won't notify you again about this release, but will get in touch when a new version is available. If you'd rather skip all updates until the next major or minor version, let me know by commenting @dependabot ignore this major version or @dependabot ignore this minor version. You can also ignore all major, minor, or patch releases for a dependency by adding an ignore condition with the desired update_types to your config file.
If you change your mind, just re-open this PR and I'll resolve any conflicts on it.