diff --git a/.github/workflows/commit.yaml b/.github/workflows/commit.yaml index 8ce7e96..26cd9de 100644 --- a/.github/workflows/commit.yaml +++ b/.github/workflows/commit.yaml @@ -36,7 +36,7 @@ jobs: no-fail: false - name: Upload Hadolint SARIF report - uses: github/codeql-action/upload-sarif@8775e868027fa230df8586bdf502bbd9b618a477 # v2.2.3 + uses: github/codeql-action/upload-sarif@8c8d71dde4abced210732d8486586914b97752e8 # v2.2.10 with: category: hadolint-${{ matrix.os }} sarif_file: hadolint.sarif @@ -99,7 +99,7 @@ jobs: fail-build: true - name: Upload Grype SARIF report - uses: github/codeql-action/upload-sarif@8775e868027fa230df8586bdf502bbd9b618a477 # v2.2.3 + uses: github/codeql-action/upload-sarif@8c8d71dde4abced210732d8486586914b97752e8 # v2.2.10 with: category: grype-${{ matrix.os }} sarif_file: ${{ steps.scan.outputs.sarif }} diff --git a/.github/workflows/pull-request.yaml b/.github/workflows/pull-request.yaml index c451095..68705b7 100644 --- a/.github/workflows/pull-request.yaml +++ b/.github/workflows/pull-request.yaml @@ -30,7 +30,7 @@ jobs: no-fail: true - name: Upload Hadolint SARIF report - uses: github/codeql-action/upload-sarif@8775e868027fa230df8586bdf502bbd9b618a477 # v2.2.3 + uses: github/codeql-action/upload-sarif@8c8d71dde4abced210732d8486586914b97752e8 # v2.2.10 with: category: hadolint-${{ matrix.os }} sarif_file: hadolint.sarif @@ -87,7 +87,7 @@ jobs: fail-build: false - name: Upload Grype SARIF report - uses: github/codeql-action/upload-sarif@8775e868027fa230df8586bdf502bbd9b618a477 # v2.2.3 + uses: github/codeql-action/upload-sarif@8c8d71dde4abced210732d8486586914b97752e8 # v2.2.10 with: category: grype-${{ matrix.os }} sarif_file: ${{ steps.scan.outputs.sarif }} diff --git a/.github/workflows/release.yaml b/.github/workflows/release.yaml index 694242f..c154761 100644 --- a/.github/workflows/release.yaml +++ b/.github/workflows/release.yaml @@ -34,7 +34,7 @@ jobs: no-fail: false - name: Upload Hadolint SARIF report - uses: github/codeql-action/upload-sarif@8775e868027fa230df8586bdf502bbd9b618a477 # v2.2.3 + uses: github/codeql-action/upload-sarif@8c8d71dde4abced210732d8486586914b97752e8 # v2.2.10 with: category: hadolint-${{ matrix.os }} sarif_file: hadolint.sarif @@ -103,7 +103,7 @@ jobs: fail-build: true - name: Upload Grype SARIF report - uses: github/codeql-action/upload-sarif@8775e868027fa230df8586bdf502bbd9b618a477 # v2.2.3 + uses: github/codeql-action/upload-sarif@8c8d71dde4abced210732d8486586914b97752e8 # v2.2.10 with: category: grype-${{ matrix.os }} sarif_file: ${{ steps.scan.outputs.sarif }}