Skip to content

build(deps): bump flyway from 9.14.1 to 9.17.0 #92

build(deps): bump flyway from 9.14.1 to 9.17.0

build(deps): bump flyway from 9.14.1 to 9.17.0 #92

name: Dependency Check
on:
push:
branches:
- main
- feature/*
paths:
- 'gradle/libs.versions.toml'
- 'settings.gradle.kts'
pull_request:
branches:
- '*'
paths:
- 'gradle/libs.versions.toml'
- 'settings.gradle.kts'
env:
CI: true
GRADLE_BUILD_ACTION_CACHE_DEBUG_ENABLED: true
jobs:
check:
# Skip build if head commit contains 'skip ci'
if: "!contains(github.event.head_commit.message, 'skip ci')"
runs-on: ubuntu-latest
name: OWASP Dependency Check
timeout-minutes: 60
steps:
- name: Checkout Repository
uses: actions/checkout@v3
- name: Set up JDK 17
uses: actions/setup-java@v3
with:
java-version: 17
distribution: zulu
- name: check
uses: eskatos/gradle-command-action@v2
env:
CI: true
with:
gradle-version: current
arguments: dependencyCheckAggregate
- name: Upload OWASP Dependencies scan results to GitHub Security tab
uses: github/codeql-action/upload-sarif@v2
id: dependecyreport
with:
sarif_file: build/reports/dependency-check-report.sarif
category: OWASP-dependency-check