From 31cdbc5a42fa19969d4b3899f63d6ff4438d6861 Mon Sep 17 00:00:00 2001 From: Alexy Grabov Date: Sat, 12 Sep 2026 20:20:07 +0300 Subject: [PATCH] fix(ci): update bandit scan actions to resolve CodeQL deprecation error and Node 20 warning --- .github/workflows/bandit.yml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/bandit.yml b/.github/workflows/bandit.yml index 23b74e7c..8b07606a 100644 --- a/.github/workflows/bandit.yml +++ b/.github/workflows/bandit.yml @@ -33,7 +33,7 @@ jobs: pip install -e '.[generator]' - name: Bandit Scan - uses: shundor/python-bandit-scan@9cc5aa4a006482b8a7f91134412df6772dbda22c + uses: shundor/python-bandit-scan@9955228c1cbdc5aeb5e511e0fa232154e2ed2b67 with: exit_zero: true # optional, default is DEFAULT GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }} # Needed to get PR information. @@ -44,7 +44,7 @@ jobs: - name: Reconcile GitHub Issues with SARIF findings if: github.event_name != 'pull_request' - uses: actions/github-script@v7 + uses: actions/github-script@v8 with: script: | const fs = require('fs');