@@ -25,12 +25,12 @@ jobs:
2525
2626 steps :
2727 - name : Checkout repository
28- uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # 4.2.2
28+ uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # 5.0.0
2929 with :
3030 submodules : ' recursive'
3131
3232 - name : Cache Gradle dependencies
33- uses : actions/cache@5a3ec84eff668545956fd18022155c47e93e2684 # v4.2.3
33+ uses : actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809 # v4.2.4
3434 with :
3535 path : |
3636 ~/.gradle/caches
4040 ${{ runner.os }}-gradle-
4141
4242 - name : Initialize CodeQL
43- uses : github/codeql-action/init@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
43+ uses : github/codeql-action/init@76621b61decf072c1cee8dd1ce2d2a82d33c17ed # v3.29.5
4444 with :
4545 languages : ' java'
4646 build-mode : ' manual'
5757 --build-cache --parallel --stacktrace --no-daemon --max-workers=4
5858
5959 - name : Perform CodeQL Analysis and upload results to GitHub Security tab
60- uses : github/codeql-action/analyze@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
60+ uses : github/codeql-action/analyze@76621b61decf072c1cee8dd1ce2d2a82d33c17ed # v3.29.5
6161
6262 trivy :
6363 name : Analyze changes with Trivy
@@ -71,12 +71,12 @@ jobs:
7171
7272 steps :
7373 - name : Checkout repository
74- uses : actions/checkout@11bd71901bbe5b1630ceea73d27597364c9af683 # 4.2.2
74+ uses : actions/checkout@08c6903cd8c0fde910a37f88322edcfb5dd907a8 # 5.0.0
7575 with :
7676 submodules : ' recursive'
7777
7878 - name : Cache Gradle dependencies
79- uses : actions/cache@5a3ec84eff668545956fd18022155c47e93e2684 # v4.2.3
79+ uses : actions/cache@0400d5f644dc74513175e3cd8d07132dd4860809 # v4.2.4
8080 with :
8181 path : |
8282 ~/.gradle/caches
@@ -122,7 +122,7 @@ jobs:
122122 TRIVY_JAVA_DB_REPOSITORY : ghcr.io/aquasecurity/trivy-java-db,public.ecr.aws/aquasecurity/trivy-java-db
123123
124124 - name : Upload Trivy scan results to GitHub Security tab
125- uses : github/codeql-action/upload-sarif@51f77329afa6477de8c49fc9c7046c15b9a4e79d # v3.29.5
125+ uses : github/codeql-action/upload-sarif@76621b61decf072c1cee8dd1ce2d2a82d33c17ed # v3.29.5
126126 if : always()
127127 with :
128128 sarif_file : ' trivy-results.sarif'
0 commit comments