diff --git a/.github/workflows/python-checks.yml b/.github/workflows/python-checks.yml index d5aef018f7..3644bd26c7 100644 --- a/.github/workflows/python-checks.yml +++ b/.github/workflows/python-checks.yml @@ -250,7 +250,7 @@ jobs: - id: run-ruff-sarif run: ruff check --output-format=sarif -o results.sarif . - - uses: github/codeql-action/upload-sarif@c793b717bc78562f491db7b0e93a3a178b099162 + - uses: github/codeql-action/upload-sarif@0d579ffd059c29b07949a3cce3983f0780820c98 if: ( success() || failure() ) && contains('["success", "failure"]', steps.run-ruff-sarif.outcome) with: sarif_file: results.sarif @@ -286,7 +286,7 @@ jobs: run: | bandit --confidence-level 'medium' --severity-level 'medium' --recursive 'parsons' --exclude '**/vendor/*' --format 'sarif' --output 'results.sarif' - - uses: github/codeql-action/upload-sarif@c793b717bc78562f491db7b0e93a3a178b099162 + - uses: github/codeql-action/upload-sarif@0d579ffd059c29b07949a3cce3983f0780820c98 if: ( success() || failure() ) && contains('["success", "failure"]', steps.run-bandit-sarif.outcome) with: sarif_file: results.sarif diff --git a/.github/workflows/security_scorecard.yml b/.github/workflows/security_scorecard.yml index b4ae000189..49be9b323b 100644 --- a/.github/workflows/security_scorecard.yml +++ b/.github/workflows/security_scorecard.yml @@ -62,6 +62,6 @@ jobs: results_format: sarif publish_results: true - - uses: github/codeql-action/upload-sarif@c793b717bc78562f491db7b0e93a3a178b099162 + - uses: github/codeql-action/upload-sarif@0d579ffd059c29b07949a3cce3983f0780820c98 with: sarif_file: results.sarif