Sourced from github/codeql-action's changelog.
CodeQL Action Changelog
[UNRELEASED]
No user facing changes.
2.3.3 - 04 May 2023
- Update default CodeQL bundle version to 2.13.1. #1664
- You can now configure CodeQL within your code scanning workflow by passing a
configinput to theinitAction. See Using a custom configuration file for more information about configuring code scanning. #15902.3.2 - 27 Apr 2023
No user facing changes.
2.3.1 - 26 Apr 2023
No user facing changes.
2.3.0 - 21 Apr 2023
- Update default CodeQL bundle version to 2.13.0. #1649
- Bump the minimum CodeQL bundle version to 2.8.5. #1618
2.2.12 - 13 Apr 2023
- Include the value of the
GITHUB_RUN_ATTEMPTenvironment variable in the telemetry sent to GitHub. #1640- Improve the ease of debugging failed runs configured using default setup. The CodeQL Action will now upload diagnostic information to Code Scanning from failed runs configured using default setup. You can view this diagnostic information on the tool status page. #1619
2.2.11 - 06 Apr 2023
No user facing changes.
2.2.10 - 05 Apr 2023
- Update default CodeQL bundle version to 2.12.6. #1629
2.2.9 - 27 Mar 2023
- Customers post-processing the SARIF output of the
analyzeAction before uploading it to Code Scanning will benefit from an improved debugging experience. #1598
- The CodeQL Action will now upload a SARIF file with debugging information to Code Scanning on failed runs for customers using
upload: false. Previously, this was only available for customers using the default value of theuploadinput.- The
uploadinput to theanalyzeAction now accepts the following values:
alwaysis the default value, which uploads the SARIF file to Code Scanning for successful and failed runs.failure-onlyis recommended for customers post-processing the SARIF file before uploading it to Code Scanning. This option uploads debugging information to Code Scanning for failed runs to improve the debugging experience.neveravoids uploading the SARIF file to Code Scanning even if the code scanning run fails. This is not recommended for external users since it complicates debugging.- The legacy
trueandfalseoptions will be interpreted asalwaysandfailure-onlyrespectively.2.2.8 - 22 Mar 2023
- Update default CodeQL bundle version to 2.12.5. #1585
... (truncated)
29b1f65
Merge pull request #1669
from github/update-v2.3.3-318bcc7f8140500d
Update changelog for v2.3.3318bcc7
Merge pull request #1664
from github/update-bundle/codeql-bundle-20230428f72bf5d
Fix workflow formatting3346195
Merge branch 'main' into update-bundle/codeql-bundle-202304288ca5570
Merge pull request #1666
from github/aeisenberg/readme-updateb1b3d00
Add link to changenote for custom configd2f6dfd
Merge pull request #1665
from github/aeisenberg/config-paramcba5616
Update CHANGELOG.md40c9593
Add changelog note