diff --git a/.github/workflows/bandit.yml b/.github/workflows/bandit.yml index 12dcaf1f..3cf4a7e3 100644 --- a/.github/workflows/bandit.yml +++ b/.github/workflows/bandit.yml @@ -45,6 +45,6 @@ jobs: retention-days: 10 - name: Upload to code-scanning dashboard - uses: github/codeql-action/upload-sarif@d39d31e687223d841ef683f52467bd88e9b21c14 # v3.25.3 + uses: github/codeql-action/upload-sarif@b7cec7526559c32f1616476ff32d17ba4c59b2d6 # v3.25.5 with: sarif_file: bandit_scan_results.sarif diff --git a/.github/workflows/scorecard.yml b/.github/workflows/scorecard.yml index d8c80956..0150dd64 100644 --- a/.github/workflows/scorecard.yml +++ b/.github/workflows/scorecard.yml @@ -46,6 +46,6 @@ jobs: # Upload the results to GitHub's code scanning dashboard. - name: "Upload to code-scanning" - uses: github/codeql-action/upload-sarif@d39d31e687223d841ef683f52467bd88e9b21c14 # v3.25.3 + uses: github/codeql-action/upload-sarif@b7cec7526559c32f1616476ff32d17ba4c59b2d6 # v3.25.5 with: sarif_file: results.sarif