Skip to content

Add CodeQL code scanning workflow for Rust vulnerability detection #2

Add CodeQL code scanning workflow for Rust vulnerability detection

Add CodeQL code scanning workflow for Rust vulnerability detection #2

Re-run triggered March 31, 2026 20:45
Status Failure
Total duration 30s
Artifacts

codeql.yml

on: pull_request
Matrix: analyze
Fit to window
Zoom out
Zoom in

Annotations

1 error and 5 warnings
Analyze (rust)
Encountered a fatal error while running "/opt/hostedtoolcache/CodeQL/2.25.1/x64/codeql/codeql database init --force-overwrite --db-cluster /home/runner/work/_temp/codeql_databases --source-root=/home/runner/work/stellar-cli/stellar-cli --calculate-language-specific-baseline --sublanguage-file-coverage --extractor-include-aliases --language=rust --codescanning-config=/home/runner/work/_temp/user-config.yaml --build-mode=manual". Exit code was 2 and error was: A fatal error occurred: Rust does not support the manual build mode. Please try using one of the following build modes instead: none. See the logs for more details.
Analyze (rust)
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: github/codeql-action/init@v3. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Node.js 20 will be removed from the runner on September 16th, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Analyze (rust)
Debugging artifacts are unavailable since the 'init' Action failed before it could produce any.
Analyze (rust)
4 diagnostic(s) could not be written to the database and will not appear on the Tool Status Page.
Analyze (rust)
Starting April 2026, the CodeQL Action will skip computing file coverage information on pull requests to improve analysis performance. File coverage information will still be computed on non-PR analyses. To opt out of this change, set the `CODEQL_ACTION_FILE_COVERAGE_ON_PRS` environment variable to `true`. Alternatively, create a custom repository property with the name `github-codeql-file-coverage-on-prs` and the type "True/false", then set this property to `true` in the repository's settings.
Analyze (rust)
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/