Skip to content

Commit 9fff4c7

Browse files
committed
Fix snyk workflows
1 parent a081493 commit 9fff4c7

File tree

2 files changed

+19
-7
lines changed

2 files changed

+19
-7
lines changed

.github/workflows/scheduled_snyk.yaml

Lines changed: 13 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -8,12 +8,14 @@ jobs:
88
env:
99
REPORT_FILE: test.json
1010
steps:
11-
- uses: actions/checkout@master
11+
- uses: actions/checkout@v3
1212
- uses: snyk/actions/setup@master
13+
with:
14+
snyk-version: v1.931.0
1315

14-
- uses: actions/setup-java@v2
16+
- uses: actions/setup-java@v3
1517
with:
16-
distribution: zulu
18+
distribution: temurin
1719
java-version: 17
1820

1921
- name: Setup Gradle
@@ -27,3 +29,11 @@ jobs:
2729
--configuration-matching='^runtimeClasspath$'
2830
--json-file-output=${{ env.REPORT_FILE }}
2931
--org=radar-base
32+
33+
- name: Report new vulnerabilities
34+
uses: thehyve/report-vulnerability@master
35+
with:
36+
report-file: ${{ env.REPORT_FILE }}
37+
env:
38+
TOKEN: ${{ secrets.GITHUB_TOKEN }}
39+
if: ${{ failure() }}

.github/workflows/snyk.yaml

Lines changed: 6 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -7,12 +7,14 @@ jobs:
77
security:
88
runs-on: ubuntu-latest
99
steps:
10-
- uses: actions/checkout@master
10+
- uses: actions/checkout@v3
1111
- uses: snyk/actions/setup@master
12+
with:
13+
snyk-version: v1.931.0
1214

13-
- uses: actions/setup-java@v2
15+
- uses: actions/setup-java@v3
1416
with:
15-
distribution: zulu
17+
distribution: temurin
1618
java-version: 17
1719

1820
- name: Setup Gradle
@@ -23,7 +25,7 @@ jobs:
2325
SNYK_TOKEN: ${{ secrets.SNYK_TOKEN }}
2426
run: >
2527
snyk test
26-
--severity-threshold=high
2728
--configuration-matching='^runtimeClasspath$'
2829
--fail-on=upgradable
2930
--org=radar-base
31+
--severity-threshold=high

0 commit comments

Comments
 (0)