220.md (8878B)
1 # PR #220 Bump github/codeql-action from 2.1.11 to 2.1.12 2 3 - **Status:** closed 4 - **Author:** @dependabot[bot] 5 - **Created:** 2022-06-06T08:13:16Z 6 - **Branch:** dependabot/github_actions/github/codeql-action-2.1.12 → main 7 - **Closed:** 2023-01-03T16:43:18Z 8 - **Labels:** dependencies, github_actions 9 - **Assignees:** @MTRNord 10 - **Reviewers:** @MTRNord 11 - **Diff:** [220.diff](./220.diff) 12 13 --- 14 15 Bumps [github/codeql-action](https://github.com/github/codeql-action) from 2.1.11 to 2.1.12. 16 <details> 17 <summary>Changelog</summary> 18 <p><em>Sourced from <a href="https://github.com/github/codeql-action/blob/main/CHANGELOG.md">github/codeql-action's changelog</a>.</em></p> 19 <blockquote> 20 <h1>CodeQL Action Changelog</h1> 21 <h2>[UNRELEASED]</h2> 22 <p>No user facing changes.</p> 23 <h2>2.1.12 - 01 Jun 2022</h2> 24 <ul> 25 <li>Update default CodeQL bundle version to 2.9.3. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1084">#1084</a></li> 26 </ul> 27 <h2>2.1.11 - 17 May 2022</h2> 28 <ul> 29 <li>Update default CodeQL bundle version to 2.9.2. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1074">#1074</a></li> 30 </ul> 31 <h2>2.1.10 - 10 May 2022</h2> 32 <ul> 33 <li>Update default CodeQL bundle version to 2.9.1. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1056">#1056</a></li> 34 <li>When <code>wait-for-processing</code> is enabled, the workflow will now fail if there were any errors that occurred during processing of the analysis results.</li> 35 </ul> 36 <h2>2.1.9 - 27 Apr 2022</h2> 37 <ul> 38 <li>Add <code>working-directory</code> input to the <code>autobuild</code> action. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1024">#1024</a></li> 39 <li>The <code>analyze</code> and <code>upload-sarif</code> actions will now wait up to 2 minutes for processing to complete after they have uploaded the results so they can report any processing errors that occurred. This behavior can be disabled by setting the <code>wait-for-processing</code> action input to <code>"false"</code>. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1007">#1007</a></li> 40 <li>Update default CodeQL bundle version to 2.9.0.</li> 41 <li>Fix a bug where <a href="https://github-redirect.dependabot.com/github/codeql-action/issues/1041">status reporting fails on Windows</a>. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1042">#1042</a></li> 42 </ul> 43 <h2>2.1.8 - 08 Apr 2022</h2> 44 <ul> 45 <li>Update default CodeQL bundle version to 2.8.5. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1014">#1014</a></li> 46 <li>Fix error where the init action would fail due to a GitHub API request that was taking too long to complete <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1025">#1025</a></li> 47 </ul> 48 <h2>2.1.7 - 05 Apr 2022</h2> 49 <ul> 50 <li>A bug where additional queries specified in the workflow file would sometimes not be respected has been fixed. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1018">#1018</a></li> 51 </ul> 52 <h2>2.1.6 - 30 Mar 2022</h2> 53 <ul> 54 <li>[v2+ only] The CodeQL Action now runs on Node.js v16. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/1000">#1000</a></li> 55 <li>Update default CodeQL bundle version to 2.8.4. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/990">#990</a></li> 56 <li>Fix a bug where an invalid <code>commit_oid</code> was being sent to code scanning when a custom checkout path was being used. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/956">#956</a></li> 57 </ul> 58 <h2>1.1.5 - 15 Mar 2022</h2> 59 <ul> 60 <li>Update default CodeQL bundle version to 2.8.3.</li> 61 <li>The CodeQL runner is now deprecated and no longer being released. For more information, see <a href="https://github.blog/changelog/2021-09-21-codeql-runner-deprecation/">CodeQL runner deprecation</a>.</li> 62 <li>Fix two bugs that cause action failures with GHES 3.3 or earlier. <a href="https://github-redirect.dependabot.com/github/codeql-action/pull/978">#978</a> 63 <ul> 64 <li>Fix <code>not a permitted key</code> invalid requests with GHES 3.1 or earlier</li> 65 <li>Fix <code>RUNNER_ARCH environment variable must be set</code> errors with GHES 3.3 or earlier</li> 66 </ul> 67 </li> 68 </ul> 69 <h2>1.1.4 - 07 Mar 2022</h2> 70 <!-- raw HTML omitted --> 71 </blockquote> 72 <p>... (truncated)</p> 73 </details> 74 <details> 75 <summary>Commits</summary> 76 <ul> 77 <li><a href="https://github.com/github/codeql-action/commit/27ea8f8fe5977c00f5b37e076ab846c5bd783b96"><code>27ea8f8</code></a> Merge pull request <a href="https://github-redirect.dependabot.com/github/codeql-action/issues/1088">#1088</a> from github/update-v2.1.12-dbe6f211</li> 78 <li><a href="https://github.com/github/codeql-action/commit/3f00a1265f8af291bf2684ce7310307d67ae4189"><code>3f00a12</code></a> Update changelog for v2.1.12</li> 79 <li><a href="https://github.com/github/codeql-action/commit/dbe6f211e66b3aa5e9a5c4731145ed310ed54e28"><code>dbe6f21</code></a> Merge pull request <a href="https://github-redirect.dependabot.com/github/codeql-action/issues/1084">#1084</a> from github/cklin/codeql-bundle-2.9.3</li> 80 <li><a href="https://github.com/github/codeql-action/commit/b36688d5b7ff68c6ad232faa98c30f83cb3b8ca8"><code>b36688d</code></a> Update default CodeQL to 2.9.3</li> 81 <li><a href="https://github.com/github/codeql-action/commit/822fe5ef9a15bd752ef127e9ff6eac38ec37dd9c"><code>822fe5e</code></a> Merge pull request <a href="https://github-redirect.dependabot.com/github/codeql-action/issues/1057">#1057</a> from github/criemen/lua-tracing-ff</li> 82 <li><a href="https://github.com/github/codeql-action/commit/255ffd480f7dd3b01d0c5a8d69f5a269e2fc9040"><code>255ffd4</code></a> Merge branch 'main' into criemen/lua-tracing-ff</li> 83 <li><a href="https://github.com/github/codeql-action/commit/4b775686a050779977c1bea895219ffadb14e42a"><code>4b77568</code></a> Choose the correct version to enable the Lua tracer for.</li> 84 <li><a href="https://github.com/github/codeql-action/commit/f0705a6d6f9c8ebf64b5188fdd89bc4cd20313bc"><code>f0705a6</code></a> Merge pull request <a href="https://github-redirect.dependabot.com/github/codeql-action/issues/1081">#1081</a> from github/clarify_missing_base</li> 85 <li><a href="https://github.com/github/codeql-action/commit/2faa3e16f37b58eb0dac332d43ed57ea876efd36"><code>2faa3e1</code></a> Remove outdated guidance on missing analysis</li> 86 <li><a href="https://github.com/github/codeql-action/commit/aaff818427d75e2aad50d3725ca4b83a828cd026"><code>aaff818</code></a> Merge pull request <a href="https://github-redirect.dependabot.com/github/codeql-action/issues/1079">#1079</a> from github/mergeback/v2.1.11-to-main-a3a6c128</li> 87 <li>Additional commits viewable in <a href="https://github.com/github/codeql-action/compare/a3a6c128d771b6b9bdebb1c9d0583ebd2728a108...27ea8f8fe5977c00f5b37e076ab846c5bd783b96">compare view</a></li> 88 </ul> 89 </details> 90 <br /> 91 92 93 [](https://docs.github.com/en/github/managing-security-vulnerabilities/about-dependabot-security-updates#about-compatibility-scores) 94 95 Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting `@dependabot rebase`. 96 97 [//]: # (dependabot-automerge-start) 98 [//]: # (dependabot-automerge-end) 99 100 --- 101 102 <details> 103 <summary>Dependabot commands and options</summary> 104 <br /> 105 106 You can trigger Dependabot actions by commenting on this PR: 107 - `@dependabot rebase` will rebase this PR 108 - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it 109 - `@dependabot merge` will merge this PR after your CI passes on it 110 - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it 111 - `@dependabot cancel merge` will cancel a previously requested merge and block automerging 112 - `@dependabot reopen` will reopen this PR if it is closed 113 - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually 114 - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) 115 - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) 116 - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself) 117 118 119 </details> 120 121 122 ## Comments 123 124 ### @dependabot[bot] — 2023-01-03T16:43:17Z 125 126 Superseded by #247. 127