Skip to content

chore(action): update github/codeql-action action to v4#1014

Merged
intcreator merged 1 commit intomainfrom
renovate/github-codeql-action-4.x
Nov 29, 2025
Merged

chore(action): update github/codeql-action action to v4#1014
intcreator merged 1 commit intomainfrom
renovate/github-codeql-action-4.x

Conversation

@renovate
Copy link
Copy Markdown
Contributor

@renovate renovate bot commented Oct 10, 2025

This PR contains the following updates:

Package Type Update Change OpenSSF
github/codeql-action action major v3.31.5 -> v4.31.5 OpenSSF Scorecard

Release Notes

github/codeql-action (github/codeql-action)

v4.31.5

Compare Source

CodeQL Action Changelog

See the releases page for the relevant changes to the CodeQL CLI and language packs.

4.31.5 - 24 Nov 2025
  • Update default CodeQL bundle version to 2.23.6. #​3321

See the full CHANGELOG.md for more information.

v4.31.4

Compare Source

CodeQL Action Changelog

See the releases page for the relevant changes to the CodeQL CLI and language packs.

4.31.4 - 18 Nov 2025

No user facing changes.

See the full CHANGELOG.md for more information.

v4.31.3

Compare Source

CodeQL Action Changelog

See the releases page for the relevant changes to the CodeQL CLI and language packs.

4.31.3 - 13 Nov 2025
  • CodeQL Action v3 will be deprecated in December 2026. The Action now logs a warning for customers who are running v3 but could be running v4. For more information, see Upcoming deprecation of CodeQL Action v3.
  • Update default CodeQL bundle version to 2.23.5. #​3288

See the full CHANGELOG.md for more information.

v4.31.2

Compare Source

v4.31.1

Compare Source

v4.31.0

Compare Source

v4.30.9

Compare Source

CodeQL Action Changelog

See the releases page for the relevant changes to the CodeQL CLI and language packs.

4.30.9 - 17 Oct 2025
  • Update default CodeQL bundle version to 2.23.3. #​3205
  • Experimental: A new setup-codeql action has been added which is similar to init, except it only installs the CodeQL CLI and does not initialize a database. Do not use this in production as it is part of an internal experiment and subject to change at any time. #​3204

See the full CHANGELOG.md for more information.

v4.30.8

Compare Source

CodeQL Action Changelog

See the releases page for the relevant changes to the CodeQL CLI and language packs.

4.30.8 - 10 Oct 2025

No user facing changes.

See the full CHANGELOG.md for more information.

v4.30.7

Compare Source

CodeQL Action Changelog

See the releases page for the relevant changes to the CodeQL CLI and language packs.

4.30.7 - 06 Oct 2025

  • [v4+ only] The CodeQL Action now runs on Node.js v24. #​3169

See the full CHANGELOG.md for more information.


Configuration

📅 Schedule: Branch creation - On day 10 and 25 of the month ( * * 10,25 * * ) (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot added the dependencies Pull requests that update a dependency file label Oct 10, 2025
@renovate renovate bot force-pushed the renovate/github-codeql-action-4.x branch 8 times, most recently from 8bc9943 to fee6bf1 Compare October 13, 2025 04:56
@renovate renovate bot force-pushed the renovate/github-codeql-action-4.x branch 2 times, most recently from a1b4ef7 to 83dd431 Compare October 20, 2025 05:49
@renovate renovate bot force-pushed the renovate/github-codeql-action-4.x branch 13 times, most recently from b94d913 to 4dad80d Compare October 31, 2025 05:02
@renovate renovate bot force-pushed the renovate/github-codeql-action-4.x branch 3 times, most recently from 7bb4cd0 to 9aa0480 Compare November 6, 2025 22:04
@renovate renovate bot force-pushed the renovate/github-codeql-action-4.x branch 3 times, most recently from b6daa9b to ad3bba9 Compare November 10, 2025 12:53
@renovate renovate bot force-pushed the renovate/github-codeql-action-4.x branch 4 times, most recently from c922030 to 15cb4ad Compare November 14, 2025 05:39
@renovate renovate bot force-pushed the renovate/github-codeql-action-4.x branch 7 times, most recently from 2d140ac to 0c51756 Compare November 25, 2025 20:38
@renovate renovate bot force-pushed the renovate/github-codeql-action-4.x branch 4 times, most recently from eeae378 to fc0c7f2 Compare November 29, 2025 18:13
@renovate renovate bot force-pushed the renovate/github-codeql-action-4.x branch from fc0c7f2 to 8c318d7 Compare November 29, 2025 18:49
@intcreator intcreator merged commit 258ee3b into main Nov 29, 2025
21 checks passed
@intcreator intcreator deleted the renovate/github-codeql-action-4.x branch November 29, 2025 18:55
node-cron-release bot pushed a commit that referenced this pull request Nov 30, 2025
## [4.3.5](v4.3.4...v4.3.5) (2025-11-30)

### 🐛 Bug Fixes

* suppress setTimeout warning with negatives ([#1030](#1030)) ([74d3b74](74d3b74)), closes [#1000](#1000)

### ♻️ Chores

* **action:** update actions/checkout action to v5.0.1 ([0f3b9f3](0f3b9f3))
* **action:** update actions/checkout action to v6 ([#1028](#1028)) ([232f23a](232f23a))
* **action:** update actions/create-github-app-token action to v2.2.0 ([1ade9ce](1ade9ce))
* **action:** update actions/setup-node action to v6 ([#1017](#1017)) ([288cf0d](288cf0d))
* **action:** update actions/upload-artifact action to v5 ([#1018](#1018)) ([7091186](7091186))
* **action:** update github/codeql-action action to v3.31.2 ([8c5c4db](8c5c4db))
* **action:** update github/codeql-action action to v3.31.5 ([c6516f1](c6516f1))
* **action:** update github/codeql-action action to v4 ([#1014](#1014)) ([258ee3b](258ee3b))
* **action:** update step-security/harden-runner action to v2.13.2 ([2f44428](2f44428))
* **deps:** update dependency [@eslint](https://github.com/eslint)/js to v9.39.1 ([319462a](319462a))
* **deps:** update dependency [@semantic-release](https://github.com/semantic-release)/github to v12.0.1 ([dfa3411](dfa3411))
* **deps:** update dependency [@swc](https://github.com/swc)/core to v1.15.0 ([7aa02a2](7aa02a2))
* **deps:** update dependency [@swc](https://github.com/swc)/core to v1.15.3 ([af87e4d](af87e4d))
* **deps:** update dependency [@types](https://github.com/types)/node to v22.19.0 ([67701aa](67701aa))
* **deps:** update dependency [@types](https://github.com/types)/node to v22.19.1 ([2c0d2bb](2c0d2bb))
* **deps:** update dependency [@types](https://github.com/types)/sinon to v21 ([#1029](#1029)) ([028b8b7](028b8b7))
* **deps:** update semantic-release related packages ([e29b122](e29b122))
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant