diff --git a/.github/workflows/trivy.yml b/.github/workflows/trivy.yml index 342d21e..a806e64 100644 --- a/.github/workflows/trivy.yml +++ b/.github/workflows/trivy.yml @@ -22,6 +22,6 @@ jobs: severity: 'CRITICAL,HIGH' vuln-type: 'os,library' - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@8214744c546c1e5c8f03dde8fab3a7353211988d # v3 + uses: github/codeql-action/upload-sarif@294a9d92911152fe08befb9ec03e240add280cb3 # v3 with: sarif_file: 'trivy-results.sarif'