Skip to content

Bump microsoft/security-devops-action from 1.6.0 to 1.12.0

3f74d7e
Select commit
Loading
Failed to load commit list.
Merged

Bump microsoft/security-devops-action from 1.6.0 to 1.12.0 #13

Bump microsoft/security-devops-action from 1.6.0 to 1.12.0
3f74d7e
Select commit
Loading
Failed to load commit list.
This check has been archived and is scheduled for deletion. Learn more about checks retention
GitHub Advanced Security / CodeQL succeeded Mar 19, 2025 in 3s

1 new alert including 1 medium severity security vulnerability

New alerts in code changed by this pull request

Security Alerts:

  • 1 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 42 in .github/workflows/defender-for-devops.yml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'Microsoft Defender For Devops' step
Uses Step: msdo
uses 'microsoft/security-devops-action' with ref 'v1.12.0', not a pinned commit hash