diff --git a/.github/workflows/validate-workflows.yml b/.github/workflows/validate-workflows.yml index be540c7..7c88333 100644 --- a/.github/workflows/validate-workflows.yml +++ b/.github/workflows/validate-workflows.yml @@ -12,7 +12,7 @@ jobs: steps: - name: Checkout local repository - uses: actions/checkout@v2 + uses: actions/checkout@v4 # See: https://github.com/ajv-validator/ajv-cli/blob/master/README.md - name: Validate GitHub Actions workflows diff --git a/dependency-check/action.yml b/dependency-check/action.yml index d882a46..165e5ec 100644 --- a/dependency-check/action.yml +++ b/dependency-check/action.yml @@ -49,7 +49,7 @@ runs: path: ${{github.workspace}}/build/reports - name: Upload dependency check report to GitHub Security tab - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 if: always() with: sarif_file: ${{github.workspace}}/build/reports/dependency-check-report.sarif diff --git a/trivy-fs-scan/action.yaml b/trivy-fs-scan/action.yaml index d8c13bf..525b3ff 100644 --- a/trivy-fs-scan/action.yaml +++ b/trivy-fs-scan/action.yaml @@ -90,13 +90,13 @@ runs: exit-code: '1' - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 if: ${{ (success() || failure()) && inputs.output-mode == 'github' && inputs.category == '' }} with: sarif_file: ${{ steps.output.outputs.TRIVY_OUTPUT }} - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 if: ${{ (success() || failure()) && inputs.output-mode == 'github' && inputs.category != '' }} with: sarif_file: ${{ steps.output.outputs.TRIVY_OUTPUT }} diff --git a/trivy-image-scan/action.yml b/trivy-image-scan/action.yml index 2822ae6..2a1c577 100644 --- a/trivy-image-scan/action.yml +++ b/trivy-image-scan/action.yml @@ -119,13 +119,13 @@ runs: TRIVY_JAVA_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-java-db - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 if: (success() || failure()) && inputs.output-mode == 'github' && steps.output.outputs.TRIVY_OUTPUT != '' && inputs.category == '' with: sarif_file: ${{ steps.output.outputs.TRIVY_OUTPUT }} - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 if: (success() || failure()) && inputs.output-mode == 'github' && steps.output.outputs.TRIVY_OUTPUT != '' && inputs.category != '' with: sarif_file: ${{ steps.output.outputs.TRIVY_OUTPUT }}