diff --git a/.github/workflows/security_scan.yml b/.github/workflows/security_scan.yml index c43bd288b..7da4cfbdc 100644 --- a/.github/workflows/security_scan.yml +++ b/.github/workflows/security_scan.yml @@ -10,7 +10,7 @@ jobs: runs-on: ubuntu-latest steps: - name: Checkout code - uses: actions/checkout@v3 + uses: actions/checkout@v4 - name: Run static analysis uses: aquasecurity/trivy-action@master @@ -23,7 +23,7 @@ jobs: severity: "CRITICAL,HIGH" - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v2 + uses: github/codeql-action/upload-sarif@v3 continue-on-error: true with: sarif_file: "trivy-results.sarif"