diff --git a/.github/workflows/merge-main.yml b/.github/workflows/merge-main.yml index 837e51df..19d9c8f5 100644 --- a/.github/workflows/merge-main.yml +++ b/.github/workflows/merge-main.yml @@ -30,12 +30,12 @@ jobs: uses: actions/checkout@v4 - name: Initialize - uses: github/codeql-action/init@v2 + uses: github/codeql-action/init@v3 with: languages: java - name: Set up JDK 17 and Caching maven dependencies - uses: actions/setup-java@v3 + uses: actions/setup-java@v4 with: distribution: "temurin" java-version: "17" @@ -45,7 +45,7 @@ jobs: run: ./mvnw clean package - name: Perform CodeQL Analysis - uses: github/codeql-action/analyze@v2 + uses: github/codeql-action/analyze@v3 sonarcloud: name: Static Analysis @@ -84,7 +84,7 @@ jobs: scanners: "vuln,secret,config" - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 with: sarif_file: "trivy-results.sarif" @@ -152,7 +152,7 @@ jobs: folder: '["general"]' - name: Conventional Changelog Update - uses: TriPSs/conventional-changelog-action@v4 + uses: TriPSs/conventional-changelog-action@v5 id: changelog continue-on-error: true with: diff --git a/.github/workflows/pr-open.yml b/.github/workflows/pr-open.yml index 0607cdbb..a580321d 100644 --- a/.github/workflows/pr-open.yml +++ b/.github/workflows/pr-open.yml @@ -23,7 +23,7 @@ jobs: - uses: actions/checkout@v4 - name: Pull request size and stability labels - uses: actions/labeler@v4 + uses: actions/labeler@v5 continue-on-error: true with: repo-token: "${{ secrets.GITHUB_TOKEN }}" @@ -43,7 +43,7 @@ jobs: - name: Conventional Changelog Update continue-on-error: true - uses: TriPSs/conventional-changelog-action@v4 + uses: TriPSs/conventional-changelog-action@v5 id: changelog with: github-token: ${{ github.token }} @@ -128,7 +128,7 @@ jobs: uses: actions/checkout@v4 - name: Set up JDK 17 and Caching maven dependencies - uses: actions/setup-java@v3 + uses: actions/setup-java@v4 with: distribution: "temurin" java-version: "17" diff --git a/.github/workflows/unit-tests.yml b/.github/workflows/unit-tests.yml index 2532da85..32ce93d7 100644 --- a/.github/workflows/unit-tests.yml +++ b/.github/workflows/unit-tests.yml @@ -38,7 +38,7 @@ jobs: sonar_token: ${{ secrets.SONAR_TOKEN }} - name: Archive CycloneDX continue-on-error: true - uses: actions/upload-artifact@v3 + uses: actions/upload-artifact@v4 with: name: cyclone path: target/bom.json @@ -91,6 +91,6 @@ jobs: scanners: "vuln,secret,config" - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 with: sarif_file: "trivy-results.sarif"