diff --git a/.github/workflows/docker-build-push.yml b/.github/workflows/docker-build-push.yml index 09f91fdc..1b0b5f8c 100644 --- a/.github/workflows/docker-build-push.yml +++ b/.github/workflows/docker-build-push.yml @@ -78,7 +78,7 @@ jobs: sed -i 's/\\u0026#39;/\x27/g' scan-results/trivy-${{ inputs.variant }}-image-scan-low.sarif - name: Upload Trivy low severity cases scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.25.4 + uses: github/codeql-action/upload-sarif@v3.25.5 with: sarif_file: scan-results/trivy-${{ inputs.variant }}-image-scan-low.sarif category: ${{ inputs.variant }}-image-scan-low-cases @@ -106,7 +106,7 @@ jobs: sed -i 's/\\u0026#39;/\x27/g' scan-results/trivy-${{ inputs.variant }}-image-scan.sarif - name: Upload Trivy scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.25.4 + uses: github/codeql-action/upload-sarif@v3.25.5 if: always() with: # Path to SARIF file relative to the root of the repository diff --git a/.github/workflows/hadolint.yml b/.github/workflows/hadolint.yml index 191496fa..3b8b9522 100644 --- a/.github/workflows/hadolint.yml +++ b/.github/workflows/hadolint.yml @@ -28,7 +28,7 @@ jobs: output-file: ${{ inputs.dockerfile }}.sarif - name: Upload Hadolint results of ${{ inputs.dockerfile }} - uses: github/codeql-action/upload-sarif@v3.25.4 + uses: github/codeql-action/upload-sarif@v3.25.5 with: # Path to SARIF file relative to the root of the repository sarif_file: ${{ inputs.dockerfile }}.sarif diff --git a/.github/workflows/pr.yml b/.github/workflows/pr.yml index ab55019d..c6506747 100644 --- a/.github/workflows/pr.yml +++ b/.github/workflows/pr.yml @@ -65,7 +65,7 @@ jobs: sed -i 's/\\u0026#39;/\x27/g' scan-results/trivy-${{ inputs.variant }}-image-scan-low.sarif - name: Upload Trivy low severity cases scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.25.4 + uses: github/codeql-action/upload-sarif@v3.25.5 with: sarif_file: scan-results/trivy-${{ inputs.variant }}-image-scan-low.sarif category: ${{ inputs.variant }}-image-scan-low-cases @@ -93,7 +93,7 @@ jobs: sed -i 's/\\u0026#39;/\x27/g' scan-results/trivy-${{ inputs.variant }}-image-scan.sarif - name: Upload Trivy scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.25.4 + uses: github/codeql-action/upload-sarif@v3.25.5 if: always() with: # Path to SARIF file relative to the root of the repository diff --git a/.github/workflows/trivy.yml b/.github/workflows/trivy.yml index 991a50a8..6b64bd77 100644 --- a/.github/workflows/trivy.yml +++ b/.github/workflows/trivy.yml @@ -25,7 +25,7 @@ jobs: output: "trivy-repository-scan.sarif" - name: Upload Trivy scan results to GitHub Security - uses: github/codeql-action/upload-sarif@v3.25.4 + uses: github/codeql-action/upload-sarif@v3.25.5 with: # Path to SARIF file relative to the root of the repository sarif_file: trivy-repository-scan.sarif