diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 3fb99253..1c1f17a6 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -191,7 +191,7 @@ jobs: severity: 'CRITICAL' scanners: 'vuln' - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@c0d1daa7f7e14667747d73a7dbbe8c074bc8bfe2 # ratchet:github/codeql-action/upload-sarif@v2.22.9 + uses: github/codeql-action/upload-sarif@b374143c1149a9115d881581d29b8390bbcbb59c # ratchet:github/codeql-action/upload-sarif@v3.22.11 if: ${{ github.event_name != 'pull_request' }} with: sarif_file: 'trivy-results.sarif'