diff --git a/.github/workflows/releaser.yml b/.github/workflows/releaser.yml index 7fa69c2..da67788 100644 --- a/.github/workflows/releaser.yml +++ b/.github/workflows/releaser.yml @@ -71,7 +71,7 @@ jobs: cache: true - name: Install Syft - uses: anchore/sbom-action/download-syft@da167eac915b4e86f08b264dbdbc867b61be6f0c # v0.20.5 + uses: anchore/sbom-action/download-syft@8e94d75ddd33f69f691467e42275782e4bfefe84 # v0.20.9 - name: Install Cosign uses: sigstore/cosign-installer@d7543c93d881b35a8faa02e8e3605f69b7a1ce62 # v3.10.0