From ecff451a5c68a8ab148ab0171200e3ca1dc12862 Mon Sep 17 00:00:00 2001 From: patrikjuvonen <22572159+patrikjuvonen@users.noreply.github.com> Date: Wed, 11 Dec 2024 13:18:42 +0200 Subject: [PATCH] Add fix for Snyk sarif file incompatibility Null value is not supported. Issue reported at https://github.com/github/codeql-action/issues/2187 --- .github/workflows/snyk-container.yml | 3 +++ 1 file changed, 3 insertions(+) diff --git a/.github/workflows/snyk-container.yml b/.github/workflows/snyk-container.yml index 8c89e6f..897b5dc 100644 --- a/.github/workflows/snyk-container.yml +++ b/.github/workflows/snyk-container.yml @@ -49,6 +49,9 @@ jobs: with: image: patrikjuvonen/docker-nginx-http3:snyk-ci args: --file=Dockerfile + # Patch for https://github.com/github/codeql-action/issues/2187 + - name: Replace security-severity undefined for license-related findings + run: sed -i 's/"security-severity": "null"/"security-severity": "0"/g' snyk.sarif - name: Upload result to GitHub Code Scanning uses: github/codeql-action/upload-sarif@v3 with: