File tree Expand file tree Collapse file tree 2 files changed +6
-6
lines changed Expand file tree Collapse file tree 2 files changed +6
-6
lines changed Original file line number Diff line number Diff line change 44
44
45
45
# required for Code scanning alerts
46
46
- name : " Upload SARIF results to code scanning"
47
- uses : github/codeql-action/upload-sarif@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
47
+ uses : github/codeql-action/upload-sarif@fca7ace96b7d713c7035871441bd52efbe39e27e # v3.28.19
48
48
with :
49
49
sarif_file : results.sarif
Original file line number Diff line number Diff line change @@ -56,15 +56,15 @@ jobs:
56
56
- name : Checkout code
57
57
uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
58
58
- name : Run Trivy vulnerability scanner in repo mode
59
- uses : aquasecurity/trivy-action@6c175e9c4083a92bbca2f9724c8a5e33bc2d97a5 # v0.30 .0
59
+ uses : aquasecurity/trivy-action@76071ef0d7ec797419534a183b498b4d6366cf37 # v0.31 .0
60
60
with :
61
61
scan-type : fs
62
62
scanners : vuln
63
63
ignore-unfixed : true
64
64
format : sarif
65
65
output : trivy-results.sarif
66
66
- name : Upload Trivy scan results to GitHub Security tab
67
- uses : github/codeql-action/upload-sarif@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
67
+ uses : github/codeql-action/upload-sarif@fca7ace96b7d713c7035871441bd52efbe39e27e # v3.28.19
68
68
with :
69
69
sarif_file : trivy-results.sarif
70
70
@@ -77,10 +77,10 @@ jobs:
77
77
- name : Checkout repository
78
78
uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # v4.2.2
79
79
- name : Initialize CodeQL
80
- uses : github/codeql-action/init@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
80
+ uses : github/codeql-action/init@fca7ace96b7d713c7035871441bd52efbe39e27e # v3.28.19
81
81
with :
82
82
languages : go
83
83
- name : Autobuild
84
- uses : github/codeql-action/autobuild@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
84
+ uses : github/codeql-action/autobuild@fca7ace96b7d713c7035871441bd52efbe39e27e # v3.28.19
85
85
- name : Perform CodeQL Analysis
86
- uses : github/codeql-action/analyze@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18
86
+ uses : github/codeql-action/analyze@fca7ace96b7d713c7035871441bd52efbe39e27e # v3.28.19
You can’t perform that action at this time.
0 commit comments