You are viewing a plain text version of this content. The canonical link for it is here.
Posted to commits@commons.apache.org by gg...@apache.org on 2023/06/24 21:18:27 UTC

[commons-ognl] branch master updated: [StepSecurity] ci: Harden GitHub Actions #127

This is an automated email from the ASF dual-hosted git repository.

ggregory pushed a commit to branch master
in repository https://gitbox.apache.org/repos/asf/commons-ognl.git


The following commit(s) were added to refs/heads/master by this push:
     new 69ee5a8  [StepSecurity] ci: Harden GitHub Actions #127
69ee5a8 is described below

commit 69ee5a8eda7680aeeb4fadb6c76f1c73c67b858a
Author: Gary Gregory <gg...@rocketsoftware.com>
AuthorDate: Sat Jun 24 17:18:23 2023 -0400

    [StepSecurity] ci: Harden GitHub Actions #127
---
 src/changes/changes.xml | 2 ++
 1 file changed, 2 insertions(+)

diff --git a/src/changes/changes.xml b/src/changes/changes.xml
index 44c8cea..8c180d7 100644
--- a/src/changes/changes.xml
+++ b/src/changes/changes.xml
@@ -83,6 +83,8 @@
       <action issue="OGNL-6" type="update" dev="simonetripodi">Upgrade groupId/artifactId/version on pom</action>
       <action issue="OGNL-2" type="update" dev="">Update legals to all OGNL file</action>
       <action issue="OGNL-1" type="update" dev="lukaszlenart">Import the OGNL codebase</action>
+      <!-- FIX -->
+      <action type="fix" dev="ggregory" due-to="step-security-bot, Gary Gregory">[StepSecurity] ci: Harden GitHub Actions #127.</action>            
       <!-- UPDATE -->
       <action type="update" dev="ggregory" due-to="Gary Gregory">Bump actions/cache from 3.0.5 to 3.0.8.</action>
       <action type="update" dev="ggregory" due-to="Dependabot">Bump actions/setup-java from 2 to 3 #70.</action>