CodeQL 2.26.4 improves GitHub actions security detections
CodeQL is the static analysis engine behind GitHub code scanning, which finds and remediates security issues in your code. We’ve recently released CodeQL 2.26.4 , which adds support for Go 1.27, improves alert locations for Rust data flow queries, and includes accuracy improvements across C#, Java/Kotlin, and GitHub Actions.
Read GitHub's release noteshttps://github.blog/changelog/2026-09-03-codeql-2-26-4-improves-github-actions-security-detections
Summaries of vendors' own notes. Product names and logos belong to their owners; logos via logo.dev.
More GitHub Actions releases
Actions retention will cover checks, workflow runs, and statuses
UpdateObservabilityDeveloper tools
Workflow execution protections in GitHub Actions generally available
GAGovernanceDeveloper tools