@@ -20,12 +20,12 @@ jobs:
2020
2121 steps :
2222 - name : Checkout repository
23- uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # 4.2.2
23+ uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # 5.0.0
2424 with :
2525 submodules : ' recursive'
2626
2727 - name : Cache Gradle dependencies
28- uses : actions/cache@5a3ec84eff668545956fd18022155c47e93e2684 # v4.2.3
28+ uses : actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809 # v4.2.4
2929 with :
3030 path : |
3131 ~/.gradle/caches
3535 ${{ runner.os }}-gradle-
3636
3737 - name : Initialize CodeQL
38- uses : github/codeql-action/init@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
38+ uses : github/codeql-action/init@76621b61decf072c1cee8dd1ce2d2a82d33c17ed # v3.29.5
3939 with :
4040 languages : ' java'
4141 build-mode : ' manual'
5252 --build-cache --parallel --stacktrace --no-daemon --max-workers=4
5353
5454 - name : Perform CodeQL Analysis and upload results to GitHub Security tab
55- uses : github/codeql-action/analyze@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
55+ uses : github/codeql-action/analyze@76621b61decf072c1cee8dd1ce2d2a82d33c17ed # v3.29.5
5656
5757 trivy :
5858 name : Analyze changes with Trivy
@@ -64,12 +64,12 @@ jobs:
6464
6565 steps :
6666 - name : Checkout repository
67- uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # 4.2.2
67+ uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # 5.0.0
6868 with :
6969 submodules : ' recursive'
7070
7171 - name : Cache Gradle dependencies
72- uses : actions/cache@5a3ec84eff668545956fd18022155c47e93e2684 # v4.2.3
72+ uses : actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809 # v4.2.4
7373 with :
7474 path : |
7575 ~/.gradle/caches
@@ -115,7 +115,7 @@ jobs:
115115 TRIVY_JAVA_DB_REPOSITORY : ghcr.io/aquasecurity/trivy-java-db,public.ecr.aws/aquasecurity/trivy-java-db
116116
117117 - name : Upload Trivy scan results to GitHub Security tab
118- uses : github/codeql-action/upload-sarif@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
118+ uses : github/codeql-action/upload-sarif@76621b61decf072c1cee8dd1ce2d2a82d33c17ed # v3.29.5
119119 if : always()
120120 with :
121121 sarif_file : ' trivy-results.sarif'
0 commit comments