chore(deps): update github/codeql-action action to v4.37.9 - #1956
chore(deps): update github/codeql-action action to v4.37.9#1956renovate[bot] wants to merge 1 commit into
Conversation
|
There was a problem hiding this comment.
🟢 Approval recommended
The change is a straightforward patch-level action pin update with no workflow logic modifications and permissions remain correctly configured for SARIF upload.
Pull request overview
This PR updates the pinned github/codeql-action/upload-sarif GitHub Action revision used to upload Trivy SARIF results to the GitHub Security tab, bumping from v4.37.7 to v4.37.8 across the container-image build workflows.
Changes:
- Bump
github/codeql-action/upload-sariffromv4.37.7tov4.37.8(commit SHA pin update). - Apply the same action update in both Supernova and Greenhouse image workflows.
File summaries
| File | Description |
|---|---|
| .github/workflows/build-push-supernova-image.yaml | Updates the pinned upload-sarif action SHA to v4.37.8 for Trivy SARIF upload. |
| .github/workflows/build-push-greenhouse-image.yaml | Updates the pinned upload-sarif action SHA to v4.37.8 for Trivy SARIF upload. |
Review details
- Files reviewed: 2/2 changed files
- Comments generated: 0
- Review effort level: Lite
💡 Add a code-review agent skill or configure MCP servers for context-aware, tailored reviews. Learn more in the docs.
2293089 to
004b488
Compare
This PR contains the following updates:
v4.37.7→v4.37.9Release Notes
github/codeql-action (github/codeql-action)
v4.37.9Compare Source
v4.37.8Compare Source
No user facing changes.
Configuration
📅 Schedule: (in timezone Europe/Berlin)
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.