Skip to content

chore(deps): update github/codeql-action digest to b6a472f #291

chore(deps): update github/codeql-action digest to b6a472f

chore(deps): update github/codeql-action digest to b6a472f #291

Triggered via pull request December 10, 2024 18:17
Status Success
Total duration 3m 40s
Artifacts

codeql-analysis.yml

on: pull_request
Matrix: Analyze
Fit to window
Zoom out
Zoom in

Annotations

10 warnings
Analyze (csharp): src/Cake.AppVeyor.Tests/Cake.AppVeyor.Tests.csproj#L1
Package 'Refit' 4.8.14 has a known critical severity vulnerability, https://github.com/advisories/GHSA-3hxg-fxwm-8gf7
Analyze (csharp): src/Cake.AppVeyor.Tests/Cake.AppVeyor.Tests.csproj#L1
Package 'Refit' 4.8.14 has a known critical severity vulnerability, https://github.com/advisories/GHSA-3hxg-fxwm-8gf7
Analyze (csharp): src/Cake.AppVeyor/Cake.AppVeyor.csproj#L1
Cake.Common is referenced in version 3.0.0. Recommended version is 4.0.0. (see https://cake-contrib.github.io/CakeContrib.Guidelines/rules/ccg0009)
Analyze (csharp): src/Cake.AppVeyor/Cake.AppVeyor.csproj#L1
Cake.Core is referenced in version 3.0.0. Recommended version is 4.0.0. (see https://cake-contrib.github.io/CakeContrib.Guidelines/rules/ccg0009)
Analyze (csharp): src/Cake.AppVeyor/Cake.AppVeyor.csproj#L1
Package 'Refit' 4.8.14 has a known critical severity vulnerability, https://github.com/advisories/GHSA-3hxg-fxwm-8gf7
Analyze (csharp): src/Cake.AppVeyor/Cake.AppVeyor.csproj#L1
Cake.Common is referenced in version 3.0.0. Recommended version is 4.0.0. (see https://cake-contrib.github.io/CakeContrib.Guidelines/rules/ccg0009)
Analyze (csharp): src/Cake.AppVeyor/Cake.AppVeyor.csproj#L1
Cake.Core is referenced in version 3.0.0. Recommended version is 4.0.0. (see https://cake-contrib.github.io/CakeContrib.Guidelines/rules/ccg0009)
Analyze (csharp): src/Cake.AppVeyor/Cake.AppVeyor.csproj#L1
Package 'Refit' 4.8.14 has a known critical severity vulnerability, https://github.com/advisories/GHSA-3hxg-fxwm-8gf7
Analyze (csharp)
1 issue was detected with this workflow: git checkout HEAD^2 is no longer necessary. Please remove this step as Code Scanning recommends analyzing the merge commit for best results.
Analyze (csharp)
Unable to validate code scanning workflow: CheckoutWrongHead