diff --git a/.github/workflows/devskim.yml b/.github/workflows/devskim.yml index 2860fbc..03819e5 100644 --- a/.github/workflows/devskim.yml +++ b/.github/workflows/devskim.yml @@ -32,7 +32,7 @@ jobs: uses: microsoft/DevSkim-Action@a6b6966a33b497cd3ae2ebc406edf8f4cc2feec6 # v1.0.15 - name: Upload DevSkim scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@60168efe1c415ce0f5521ea06d5c2062adbeed1b # v3.28.17 + uses: github/codeql-action/upload-sarif@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18 with: should-scan-archives: true sarif_file: devskim-results.sarif diff --git a/.github/workflows/msdo.yml b/.github/workflows/msdo.yml index 675eee5..235359b 100644 --- a/.github/workflows/msdo.yml +++ b/.github/workflows/msdo.yml @@ -31,6 +31,6 @@ jobs: id: msdo - name: Upload MSDO scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@60168efe1c415ce0f5521ea06d5c2062adbeed1b # v3.28.17 + uses: github/codeql-action/upload-sarif@ff0a06e83cb2de871e5a09832bc6a81e7276941f # v3.28.18 with: sarif_file: ${{ steps.msdo.outputs.sarifFile }}