github / github/codeql

Autobuild does not find maven build (pom.xml) files in subdirs

Ouverte
#5,331 1 commentaire 0 réactions 0 personnes assignées Voir sur GitHub
question
Langage dominant
CodeQL
Étoiles
10.1k
Forks
2.1k
Merge moyen
2 j 15 h
PR mergées (30 j)
141

Description

**Description of the issue**
I have a repo with multiple Java maven projects. The default codeql-analysis.yml file looks like this:
```
jobs:
...
steps:
...
- name: Autobuild
uses: github/codeql-action/autobuild@v1
...
```
Github's advanced security workflow reports that it cannot find a suitable source file to build when pom.xml files are not in the root of the repo: ```ERROR: Could not detect a suitable build command for the source checkout.```

Is that expected?

**Workaround**
I can change it to use the find utility to search for pom.xml files and run the package goal:
```
jobs:
...
steps:
...
- if: matrix.language != 'java'
name: Autobuild
uses: github/codeql-action/autobuild@v1

- if: matrix.language == 'java'
name: Build Java
run: |
find . -name pom.xml -exec mvn -f {} package \;
...
```

**My Ask**
If that is expected, then I'm asking for an enhancement request to the autobuilder to search for pom.xml files.

Either way, I request Github doc be updated to show a solution like above for this, IMO, very common scenario.

Thanks!

Guide de contribution

Ouvrir le guide de contribution

Évaluation

Cette issue n'a pas encore été évaluée.

Recevez les nouvelles issues par e-mail

Un résumé court des issues GitHub adaptées aux débutants.