github / github/codeql

Autobuild does not find maven build (pom.xml) files in subdirs

Aperta
#5,331 1 commento 0 reazioni 0 assegnatari Vedi su GitHub
question
Lingua principale
CodeQL
Stelle
10.1k
Fork
2.1k
Merge medio
2g 15h
PR unite (30g)
141

Descrizione

**Description of the issue**
I have a repo with multiple Java maven projects. The default codeql-analysis.yml file looks like this:
```
jobs:
...
steps:
...
- name: Autobuild
uses: github/codeql-action/autobuild@v1
...
```
Github's advanced security workflow reports that it cannot find a suitable source file to build when pom.xml files are not in the root of the repo: ```ERROR: Could not detect a suitable build command for the source checkout.```

Is that expected?

**Workaround**
I can change it to use the find utility to search for pom.xml files and run the package goal:
```
jobs:
...
steps:
...
- if: matrix.language != 'java'
name: Autobuild
uses: github/codeql-action/autobuild@v1

- if: matrix.language == 'java'
name: Build Java
run: |
find . -name pom.xml -exec mvn -f {} package \;
...
```

**My Ask**
If that is expected, then I'm asking for an enhancement request to the autobuilder to search for pom.xml files.

Either way, I request Github doc be updated to show a solution like above for this, IMO, very common scenario.

Thanks!

Guida per i contributori

Apri la guida per i contributori

Valutazione

Questa issue non è ancora stata valutata.

Ricevi le nuove issue nella tua casella

Un breve riepilogo di issue GitHub adatte ai principianti.