diff --git a/.github/workflows/cd.yml b/.github/workflows/cd.yml index 5f5a028..29d448e 100644 --- a/.github/workflows/cd.yml +++ b/.github/workflows/cd.yml @@ -116,7 +116,7 @@ jobs: output: trivy-backend.sarif - name: 上传后端 SARIF - uses: github/codeql-action/upload-sarif@v3 + uses: github/codeql-action/upload-sarif@v4 with: sarif_file: trivy-backend.sarif @@ -170,6 +170,6 @@ jobs: output: trivy-frontend.sarif - name: 上传前端 SARIF - uses: github/codeql-action/upload-sarif@v3 + uses: github/codeql-action/upload-sarif@v4 with: sarif_file: trivy-frontend.sarif diff --git a/.github/workflows/codeql.yml b/.github/workflows/codeql.yml index 207205e..2604bd0 100644 --- a/.github/workflows/codeql.yml +++ b/.github/workflows/codeql.yml @@ -27,12 +27,12 @@ jobs: uses: actions/checkout@v4 - name: 初始化 CodeQL - uses: github/codeql-action/init@v3 + uses: github/codeql-action/init@v4 with: languages: ${{ matrix.language }} - name: 自动构建 - uses: github/codeql-action/autobuild@v3 + uses: github/codeql-action/autobuild@v4 - name: 执行扫描 - uses: github/codeql-action/analyze@v3 + uses: github/codeql-action/analyze@v4