diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index fcf70d21..057436b0 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -205,7 +205,7 @@ jobs: severity: 'CRITICAL' scanners: 'vuln' - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@49abf0ba24d0b7953cb586944e918a0b92074c80 # ratchet:github/codeql-action/upload-sarif@v2.22.4 + uses: github/codeql-action/upload-sarif@74483a38d39275f33fcff5f35b679b5ca4a26a99 # ratchet:github/codeql-action/upload-sarif@v2.22.5 if: ${{ github.event_name != 'pull_request' }} with: sarif_file: 'trivy-results.sarif' diff --git a/.github/workflows/clojure-frontend.yml b/.github/workflows/clojure-frontend.yml index 8eb0a420..452fbdb8 100644 --- a/.github/workflows/clojure-frontend.yml +++ b/.github/workflows/clojure-frontend.yml @@ -135,7 +135,7 @@ jobs: severity: 'CRITICAL' scanners: 'vuln' - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@49abf0ba24d0b7953cb586944e918a0b92074c80 # ratchet:github/codeql-action/upload-sarif@v2.22.4 + uses: github/codeql-action/upload-sarif@74483a38d39275f33fcff5f35b679b5ca4a26a99 # ratchet:github/codeql-action/upload-sarif@v2.22.5 if: ${{ github.event_name != 'pull_request' }} with: sarif_file: 'trivy-results.sarif'