diff --git a/.github/workflows/devskim.yml b/.github/workflows/devskim.yml index 2a6a71d..605848b 100644 --- a/.github/workflows/devskim.yml +++ b/.github/workflows/devskim.yml @@ -32,7 +32,7 @@ jobs: uses: microsoft/DevSkim-Action@a6b6966a33b497cd3ae2ebc406edf8f4cc2feec6 # v1.0.15 - name: Upload DevSkim scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@5f8171a638ada777af81d42b55959a643bb29017 # v3.28.12 + uses: github/codeql-action/upload-sarif@1b549b9259bda1cb5ddde3b41741a82a2d15a841 # v3.28.13 with: should-scan-archives: true sarif_file: devskim-results.sarif diff --git a/.github/workflows/msdo.yml b/.github/workflows/msdo.yml index 7f32acd..f6695b7 100644 --- a/.github/workflows/msdo.yml +++ b/.github/workflows/msdo.yml @@ -31,6 +31,6 @@ jobs: id: msdo - name: Upload MSDO scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@5f8171a638ada777af81d42b55959a643bb29017 # v3.28.12 + uses: github/codeql-action/upload-sarif@1b549b9259bda1cb5ddde3b41741a82a2d15a841 # v3.28.13 with: sarif_file: ${{ steps.msdo.outputs.sarifFile }}