diff --git a/.github/workflows/kubesec.yml b/.github/workflows/kubesec.yml index 03976a4bf..6fc1a3a72 100644 --- a/.github/workflows/kubesec.yml +++ b/.github/workflows/kubesec.yml @@ -49,6 +49,6 @@ jobs: retention-days: 5 - name: Upload Kubesec scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@afb54ba388a7dca6ecae48f608c4ff05ff4cc77a # v3 + uses: github/codeql-action/upload-sarif@eb055d739abdc2e8de2e5f4ba1a8b246daa779aa # v3 with: sarif_file: kubesec-results.sarif diff --git a/.github/workflows/scan-container.yaml b/.github/workflows/scan-container.yaml index 027731048..448c255f3 100644 --- a/.github/workflows/scan-container.yaml +++ b/.github/workflows/scan-container.yaml @@ -75,6 +75,6 @@ jobs: template: "@/contrib/sarif.tpl" output: trivy-results.sarif - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@afb54ba388a7dca6ecae48f608c4ff05ff4cc77a # v3 + uses: github/codeql-action/upload-sarif@eb055d739abdc2e8de2e5f4ba1a8b246daa779aa # v3 with: sarif_file: trivy-results.sarif