diff --git a/.github/workflows/ci.yml b/.github/workflows/ci.yml index 34e2b149a6..6b3a3a43e5 100644 --- a/.github/workflows/ci.yml +++ b/.github/workflows/ci.yml @@ -18,10 +18,10 @@ jobs: fail-fast: false steps: - name: Checkout code - uses: actions/checkout@v3 + uses: actions/checkout@v4 - name: Setup python - uses: actions/setup-python@v4 + uses: actions/setup-python@v5 with: python-version: "3.10" architecture: "x64" @@ -80,16 +80,16 @@ jobs: --health-retries 5 steps: - name: Checkout code - uses: actions/checkout@v3 + uses: actions/checkout@v4 - name: Setup Java - uses: actions/setup-java@v3 + uses: actions/setup-java@v4 with: distribution: "adopt" java-version: "8" - name: Setup python - uses: actions/setup-python@v4 + uses: actions/setup-python@v5 with: python-version: "3.10" architecture: "x64" @@ -120,7 +120,7 @@ jobs: runs-on: ubuntu-22.04 steps: - name: Checkout code - uses: actions/checkout@v3 + uses: actions/checkout@v4 - name: Update apt sources run: sudo apt-get update @@ -131,7 +131,7 @@ jobs: run: echo "version=${GITHUB_REF#refs/heads/}" >> $GITHUB_ENV - name: Build Docker image - uses: docker/build-push-action@v3 + uses: docker/build-push-action@v6 with: context: . file: ./docker/onadata-uwsgi/Dockerfile.ubuntu @@ -162,7 +162,7 @@ jobs: output: "trivy_results.sarif" - name: Upload vulnerability scan results - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 if: github.event_name == 'push' || github.event_name == 'pull_request' with: sarif_file: "trivy_results.sarif"