GitHub / github/codeql-action issues and pull requests
#3425 - Update default bundle to 2.24.0
Pull Request -
State: closed - Opened by github-actions[bot] 17 days ago
Labels: size/XS
#3424 - Add feature flag to skip computing baseline file coverage information on PRs
Pull Request -
State: open - Opened by henrymercer 17 days ago
Labels: size/S
#3423 - Add `installYq` option to `sync.py` and install `yq` directly from GitHub release
Pull Request -
State: closed - Opened by mbg 19 days ago
- 1 comment
Labels: size/XS
#3422 - Warn if a private registry configuration uses a PAT, but has no username
Pull Request -
State: open - Opened by mbg 19 days ago
Labels: size/M
#3421 - Tolerate errors loading repository properties
Pull Request -
State: open - Opened by henrymercer 20 days ago
Labels: size/M
#3381 - Update config-utils.ts
Pull Request -
State: closed - Opened by joe10832 about 2 months ago
#3366 - Bump actions/upload-artifact from 5 to 6 in /.github/workflows
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
- 1 comment
Labels: size/XS
#3365 - Bump actions/download-artifact from 6 to 7 in /.github/workflows
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
Labels: size/XS
#3364 - Bump ruby/setup-ruby from 1.269.0 to 1.270.0 in /.github/workflows in the actions-minor group across 1 directory
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
- 1 comment
Labels: size/XS
#3363 - Bump @actions/core from 1.11.1 to 2.0.1
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
- 1 comment
Labels: size/XS
#3362 - Bump @actions/exec from 1.1.1 to 2.0.0
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
- 1 comment
Labels: size/XS
#3361 - Bump @actions/artifact from 4.0.0 to 5.0.1
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
- 1 comment
Labels: size/XS
#3360 - Bump @actions/cache from 4.1.0 to 5.0.1
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
- 1 comment
Labels: size/XS
#3359 - Bump the npm-minor group with 3 updates
Pull Request -
State: open - Opened by dependabot[bot] about 2 months ago
- 1 comment
Labels: size/XS
#3358 - Add status report for uploading databases to API
Pull Request -
State: open - Opened by henrymercer about 2 months ago
Labels: size/S
#3352 - Clean up `JavaMinimizeDependencyJars` feature flag
Pull Request -
State: open - Opened by nickrolfe 2 months ago
Labels: size/S
#3349 - Bump the actions-minor group across 1 directory with 2 updates
Pull Request -
State: closed - Opened by dependabot[bot] 2 months ago
- 1 comment
Labels: size/XS
#3348 - Bump the npm-minor group with 5 updates
Pull Request -
State: closed - Opened by dependabot[bot] 2 months ago
- 1 comment
Labels: size/XS
#3309 - Remove `AnalyzeUseNewUpload` FF and make its behaviour the default
Pull Request -
State: open - Opened by mbg 3 months ago
Labels: size/S
#3251 - Turn enablement errors into configuration errors
Pull Request -
State: closed - Opened by mbg 4 months ago
Labels: size/S
#3239 - Remove `add-snippets` input
Pull Request -
State: closed - Opened by mbg 4 months ago
Labels: size/S
#3209 - Skip failed SARIF upload if Code Quality is the only analysis kind
Pull Request -
State: closed - Opened by mbg 4 months ago
#3208 - Codeql action unable to build .NET project randomly
Issue -
State: open - Opened by alexaka1 4 months ago
- 3 comments
#3207 - CSharp on macos with C# and dotnet 10 not finalizing anymore
Issue -
State: open - Opened by sandrohanea 4 months ago
- 3 comments
#3206 - Use `uploadSarif` rather than `uploadFiles` in `analyze` action
Pull Request -
State: open - Opened by mbg 4 months ago
#3205 - Update default bundle to 2.23.3
Pull Request -
State: open - Opened by github-actions[bot] 4 months ago
#3204 - Add `setup-codeql` action
Pull Request -
State: open - Opened by mbg 4 months ago
#3203 - Handle user errors for invalid `UserConfig`s and missing query files
Pull Request -
State: open - Opened by mbg 4 months ago
#3202 - Bit
Issue -
State: closed - Opened by misoxxx4-hue 4 months ago
Labels: invalid
#3201 - Merge releases/v4 into releases/v3
Pull Request -
State: closed - Opened by github-actions[bot] 4 months ago
- 1 comment
#3200 - Revert "Rebuild" commit rather than "Update dependencies"
Pull Request -
State: closed - Opened by henrymercer 4 months ago
#3199 - Mergeback v4.30.8 refs/heads/releases/v4 into main
Pull Request -
State: closed - Opened by github-actions[bot] 4 months ago
- 1 comment
#3192 - Make the overlay changed files always include the diff
Pull Request -
State: open - Opened by alexet 4 months ago
#3191 - Test; do not merge
Pull Request -
State: closed - Opened by nickrolfe 4 months ago
#3190 - Test PR to enable Java dependency minimization
Issue -
State: closed - Opened by nickrolfe 4 months ago
- 1 comment
#3189 - Add configuration error for rate limited CodeQL download
Pull Request -
State: closed - Opened by henrymercer 4 months ago
#3188 - Allow `Partial<Config>` for `createStatusReportBase`
Pull Request -
State: open - Opened by mbg 4 months ago
#3187 - Merge releases/v4 into releases/v3
Pull Request -
State: closed - Opened by github-actions[bot] 4 months ago
- 1 comment
#3186 - Mergeback v4.30.7 refs/heads/releases/v4 into main
Pull Request -
State: open - Opened by github-actions[bot] 4 months ago
Labels: Rebuild
#3185 - Add unit tests for `uploadPayload`
Pull Request -
State: open - Opened by redsun82 4 months ago
- 2 comments
#3183 - Merge main into releases/v4
Pull Request -
State: closed - Opened by github-actions[bot] 4 months ago
#3182 - Bump the npm group with 4 updates
Pull Request -
State: closed - Opened by dependabot[bot] 4 months ago
- 1 comment
#3181 - Add more end-to-end tests for `upload-sarif`
Pull Request -
State: open - Opened by mbg 4 months ago
#3180 - Introduce `CODEQL_ACTION_SKIP_SARIF_UPLOAD`
Pull Request -
State: closed - Opened by redsun82 4 months ago
- 4 comments
#3179 - Update changelog and version after v3.30.1
Pull Request -
State: closed - Opened by haithamsafe3-cmd 4 months ago
#3177 - Rename .editorconfig to .editorconfig
Pull Request -
State: closed - Opened by haithamsafe3-cmd 4 months ago
#3175 - Support requesting latest version from toolcache with `tools: toolcache`
Pull Request -
State: closed - Opened by mbg 4 months ago
- 1 comment
#3172 - Merge main into releases/v3
Pull Request -
State: closed - Opened by github-actions[bot] 4 months ago
#3171 - Add basic telemetry for `start-proxy` Action
Pull Request -
State: closed - Opened by mbg 4 months ago
#3170 - Remove `update-proxy-release` workflow
Pull Request -
State: closed - Opened by mbg 4 months ago
#3169 - [v4] Upgrade Node.js runtime from v20 to v24
Pull Request -
State: closed - Opened by mario-campos 4 months ago
- 4 comments
#3168 - Update default bundle to 2.23.2
Pull Request -
State: closed - Opened by github-actions[bot] 5 months ago
#3166 - Add tests for `upload-sarif`
Pull Request -
State: open - Opened by mbg 5 months ago
#3165 - Unable to upload "gosec-results.sarif" as it is not valid SARIF
Issue -
State: closed - Opened by DrakkarStorm 5 months ago
- 3 comments
#3163 - ✨ Set up Copilot instructions
Issue -
State: open - Opened by EjaihLyricLaStrange 5 months ago
#3162 - Mergeback v3.30.5 refs/heads/releases/v3 into main
Pull Request -
State: closed - Opened by github-actions[bot] 5 months ago
- 1 comment
#3161 - Merge main into releases/v3
Pull Request -
State: open - Opened by github-actions[bot] 5 months ago
#3159 - Update vulnerable dependency brace-expansion
Pull Request -
State: closed - Opened by oscarsj 5 months ago
#3158 - Overlay: use overlay-base CodeQL version
Pull Request -
State: open - Opened by cklin 5 months ago
#3157 - Fix `upload-sarif` not uploading non-`.sarif` files
Pull Request -
State: open - Opened by mbg 5 months ago
#3156 - upload-sarif 3.30.4 silently stopped uploading (2025-09-25)
Issue -
State: closed - Opened by TWiStErRob 5 months ago
- 8 comments
Labels: bug
#3152 - Add `npm run ava` command, update instructions, and exclude files from VSCode search
Pull Request -
State: closed - Opened by mbg 5 months ago
#3151 - Don't dry-run `rollback-release` workflow on release branches
Pull Request -
State: closed - Opened by mbg 5 months ago
#3150 - Mergeback v3.30.4 refs/heads/releases/v3 into main
Pull Request -
State: open - Opened by github-actions[bot] 5 months ago
Labels: Rebuild
#3148 - build: use --serial in 'just test_file'
Pull Request -
State: closed - Opened by cklin 5 months ago
#3147 - Bump @actions/cache from 4.0.5 to 4.1.0 in the npm group
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
#3146 - Provide `Authorization` header when downloading `update-job-proxy`
Pull Request -
State: open - Opened by mbg 5 months ago
#3142 - codeql-action/init workflow validation doesn't respect custom source-root
Issue -
State: open - Opened by g-ulli 5 months ago
#3141 - Compute preliminary overlay database mode
Issue -
State: open - Opened by cklin 5 months ago
#3139 - Fix `tools: linked` log message
Pull Request -
State: closed - Opened by henrymercer 5 months ago
#3138 - Bump the actions group across 1 directory with 2 updates
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
Labels: dependencies, github_actions
#3137 - Only run PR checks on Ubuntu by default
Issue -
State: closed - Opened by henrymercer 5 months ago
#3136 - Add telemetry for dependency caching
Pull Request -
State: closed - Opened by mbg 5 months ago
#3134 - Bump the actions group across 1 directory with 6 updates
Pull Request -
State: open - Opened by dependabot[bot] 5 months ago
Labels: dependencies, github_actions
#3134 - Bump the actions group across 1 directory with 6 updates
Pull Request -
State: open - Opened by dependabot[bot] 5 months ago
Labels: dependencies, github_actions
#3133 - Bump the npm group with 5 updates
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
#3133 - Bump the npm group with 5 updates
Pull Request -
State: closed - Opened by dependabot[bot] 5 months ago
- 1 comment
#3132 - [WIP] This repository currently contains a number of Python scripts that are used by various CI workflows. We want to migrate these Python scripts to TypeScript to get better type safety and for more uniformity with the main codebase (that is also written in...
Pull Request -
State: open - Opened by Copilot 5 months ago
#3132 - Convert Python CI scripts to TypeScript for better type safety and consistency
Pull Request -
State: open - Opened by Copilot 5 months ago
#3131 - CI: Improve safety of update required checks script
Pull Request -
State: closed - Opened by henrymercer 5 months ago
#3131 - CI: Improve safety of update required checks script
Pull Request -
State: closed - Opened by henrymercer 5 months ago
#3130 - Support requesting latest nightly with `tools: nightly`
Pull Request -
State: closed - Opened by henrymercer 5 months ago
- 1 comment
#3130 - Support requesting latest nightly with `tools: nightly`
Pull Request -
State: closed - Opened by henrymercer 5 months ago
- 1 comment
#3128 - Add `concurrency` settings to PR checks
Pull Request -
State: closed - Opened by mbg 5 months ago
#3128 - Add `concurrency` settings to PR checks
Pull Request -
State: closed - Opened by mbg 5 months ago
#3127 - Refactor database configuration from `config-utils` into its own file
Pull Request -
State: open - Opened by mbg 5 months ago
#3127 - Refactor database configuration from `config-utils` into its own file
Pull Request -
State: closed - Opened by mbg 5 months ago
#3126 - Add support for the repository properties API
Pull Request -
State: open - Opened by mbg 5 months ago
#3125 - Overlay: use restoreCache() timeout
Issue -
State: closed - Opened by cklin 5 months ago
#3124 - Rename withTimeout() to waitForResultWithTimeLimit()
Pull Request -
State: closed - Opened by cklin 5 months ago
#3123 - Fix `upload-sarif` Action failing if there are no Code Scanning SARIF files
Issue -
State: closed - Opened by mbg 5 months ago
- 2 comments
#3122 - Update ref description in action.ymls to include expected format for uploads
Pull Request -
State: open - Opened by felickz 5 months ago
#3122 - Update ref description in action.ymls to include expected format for uploads
Pull Request -
State: open - Opened by felickz 5 months ago
#3121 - [Do not merge] Specify `Accept` header for `toolcache.downloadTool`
Pull Request -
State: closed - Opened by mbg 5 months ago
#3120 - Specify `Accept` header for `toolcache.downloadTool`
Pull Request -
State: closed - Opened by mbg 5 months ago
- 1 comment
#3120 - Specify `Accept` header for `toolcache.downloadTool`
Pull Request -
State: closed - Opened by mbg 5 months ago
- 1 comment
#3119 - Use `browser_download_url` instead of `url`
Pull Request -
State: closed - Opened by mbg 5 months ago
- 1 comment
#3118 - Update default bundle to 2.23.1
Pull Request -
State: open - Opened by github-actions[bot] 5 months ago
#3118 - Update default bundle to 2.23.1
Pull Request -
State: closed - Opened by github-actions[bot] 5 months ago
#3117 - Support non-lock files for C# cache key computation
Pull Request -
State: open - Opened by mbg 5 months ago