diff --git a/.github/workflows/scan.yml b/.github/workflows/scan.yml index 4fe5399d..8f6c36e0 100644 --- a/.github/workflows/scan.yml +++ b/.github/workflows/scan.yml @@ -145,7 +145,7 @@ jobs: retention-days: 3 - name: Upload Trivy Scan Results To GitHub Security Tab - uses: github/codeql-action/upload-sarif@2cb752a87e96af96708ab57187ab6372ee1973ab # v2 + uses: github/codeql-action/upload-sarif@9ace329d8c0504a5571820cf13ab64d3f59e84fb # v2 with: sarif_file: 'trivy-results.sarif' category: ${{ matrix.image }}:${{ env.tag }}