diff --git a/.github/workflows/meterian.yml b/.github/workflows/meterian.yml index 335a2a8c0d..99dfb8e1e5 100644 --- a/.github/workflows/meterian.yml +++ b/.github/workflows/meterian.yml @@ -26,7 +26,7 @@ jobs: with: cli_args: "--report-sarif=report.sarif" oss: true - - uses: github/codeql-action/upload-sarif@cdefb33c0f6224e58673d9004f47f7cb3e328b89 # v3.29.5 + - uses: github/codeql-action/upload-sarif@b20883b0cd1f46c72ae0ba6d1090936928f9fa30 # v3.29.5 if: success() || failure() with: sarif_file: report.sarif diff --git a/.github/workflows/studio-security-audit.yml b/.github/workflows/studio-security-audit.yml index fc49644675..58a19f198a 100644 --- a/.github/workflows/studio-security-audit.yml +++ b/.github/workflows/studio-security-audit.yml @@ -166,10 +166,10 @@ jobs: uses: actions/checkout@de0fac2e4500dabe0009e67214ff5f5447ce83dd # v6.0.2 - name: "Initialize CodeQL" - uses: github/codeql-action/init@cdefb33c0f6224e58673d9004f47f7cb3e328b89 # v3.29.5 + uses: github/codeql-action/init@b20883b0cd1f46c72ae0ba6d1090936928f9fa30 # v3.29.5 with: languages: javascript queries: security-and-quality - name: "Perform CodeQL Analysis" - uses: github/codeql-action/analyze@cdefb33c0f6224e58673d9004f47f7cb3e328b89 # v3.29.5 + uses: github/codeql-action/analyze@b20883b0cd1f46c72ae0ba6d1090936928f9fa30 # v3.29.5