Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

ci(codeql): setup code vulnerability scanning #417

Merged
merged 4 commits into from
May 9, 2024
Merged

Conversation

MrDynamo
Copy link
Member

@MrDynamo MrDynamo commented May 9, 2024

This PR enables CodeQL to scan the codebase for any user introduced security vulnerabilities.

@github-advanced-security
Copy link

This pull request sets up GitHub code scanning for this repository. Once the scans have completed and the checks have passed, the analysis results for this pull request branch will appear on this overview. Once you merge this pull request, the 'Security' tab will show more code scanning analysis results (for example, for the default branch). Depending on your configuration and choice of analysis tool, future pull requests will be annotated with code scanning analysis results. For more information about GitHub code scanning, check out the documentation.

@MrDynamo
Copy link
Member Author

MrDynamo commented May 9, 2024

Squash

@MrDynamo MrDynamo merged commit 37612b5 into develop May 9, 2024
@JamsRepos JamsRepos deleted the ci/codeql-scanning branch May 10, 2024 12:30
wizarr-sentry bot pushed a commit that referenced this pull request May 19, 2024
## [4.1.1-beta.2](v4.1.1-beta.1...v4.1.1-beta.2) (2024-05-19)

### Continuous Integration

* **codeql:** setup code vulnerability scanning ([#417](#417)) ([37612b5](37612b5))
* **deps:** setup dependabot updates ([#413](#413)) ([97a5fd4](97a5fd4))
* **pr-review:** 🔧 scope to pr target only ([e6008a6](e6008a6))
* setup auto pr reviews ([#415](#415)) ([ec0c1ee](ec0c1ee))

### Chores

* 🧽 sync develop with beta ([3e213b1](3e213b1))
wizarr-sentry bot pushed a commit that referenced this pull request May 21, 2024
## [4.1.1](v4.1.0...v4.1.1) (2024-05-21)

### Bug Fixes

* 🐛 Beta message no longer shows on main releases ([819223e](819223e))
* 🐛 Fix migration syntax error ([affa9ff](affa9ff))
* 🩹 Re-write plex.tv URL's to app.plex.tv on media server override ([7eaf403](7eaf403))
* 🩹 Removed plex home configuration due to not existing in the Plex API ([a075079](a075079))
* 🚑 Corrected the variable for unlimited invite uses on plex ([b605010](b605010))
* 🚑 Plex API endpoint for deleting users ([462deae](462deae))

### Performance Improvements

* 🚀 Only update Emby/Jellyfin users when data is different ([44fe2f1](44fe2f1))
* 🚀API Endpoint Optimisation ([#409](#409)) ([82d4cf5](82d4cf5))

### Continuous Integration

* **codeql:** setup code vulnerability scanning ([#417](#417)) ([37612b5](37612b5))
* **deps:** setup dependabot updates ([#413](#413)) ([97a5fd4](97a5fd4))
* **pr-review:** 🔧 scope to pr target only ([e6008a6](e6008a6))
* **semantic-release:** auto-sync commit message ([05b3931](05b3931))
* **semantic-release:** update sync commit msg ([9235de4](9235de4))
* setup auto pr reviews ([#415](#415)) ([ec0c1ee](ec0c1ee))

### Chores

* 🧺 Exclude unraid template from triggering semantic releases ([08840b9](08840b9))
* 🧼 Corrected branch of the latest image ([3e52988](3e52988))
* 🧼 Exclude language filles from the workspace search ([e956c28](e956c28))
* 🧽 Fixed formatting with sematic release commit names ([c913942](c913942))
* 🧽 sync develop with beta ([7107159](7107159))
* 🧽 sync develop with beta ([3e213b1](3e213b1))
* 🧽 Updated the unraid template to include different branches ([8a82a78](8a82a78))
* **release:** 4.1.1-beta.1 ([0058a5b](0058a5b)), closes [#409](#409)
* **release:** 4.1.1-beta.2 ([e90d092](e90d092)), closes [#417](#417) [#413](#413) [#415](#415)
* **release:** 4.1.1-beta.3 ([a37aa0e](a37aa0e))

### Code Refactoring

* 📦 Update Available toasts no longer appear for non-admins ([8f18d98](8f18d98))
@wizarr-sentry
Copy link
Contributor

wizarr-sentry bot commented May 21, 2024

🎉 This PR is included in version 4.1.1 🎉

The release is available on:

Your semantic-release bot 📦🚀

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant