diff --git a/.github/workflows/analysis.yml b/.github/workflows/analysis.yml index 3fabfc46..40b89f52 100644 --- a/.github/workflows/analysis.yml +++ b/.github/workflows/analysis.yml @@ -84,7 +84,7 @@ jobs: steps: - uses: actions/checkout@v4 - name: Run Trivy vulnerability scanner in repo mode - uses: aquasecurity/trivy-action@0.19.0 + uses: aquasecurity/trivy-action@0.24.0 with: format: "sarif" output: "trivy-results.sarif" diff --git a/.github/workflows/pr-open.yml b/.github/workflows/pr-open.yml index 4e9a5fac..4ded65e9 100644 --- a/.github/workflows/pr-open.yml +++ b/.github/workflows/pr-open.yml @@ -20,7 +20,7 @@ jobs: package: [ backend, frontend ] timeout-minutes: 10 steps: - - uses: bcgov-nr/action-builder-ghcr@v2.0.2 + - uses: bcgov-nr/action-builder-ghcr@v2.2.0 with: package: ${{ matrix.package }} tag: ${{ github.event.number }} diff --git a/.github/workflows/pr-validate.yml b/.github/workflows/pr-validate.yml index 34a7b0a6..c9fa288c 100644 --- a/.github/workflows/pr-validate.yml +++ b/.github/workflows/pr-validate.yml @@ -15,7 +15,7 @@ jobs: name: Conventional Commits runs-on: ubuntu-22.04 steps: - - uses: amannn/action-semantic-pull-request@v5.4.0 + - uses: amannn/action-semantic-pull-request@v5.5.3 env: GITHUB_TOKEN: ${{ secrets.GITHUB_TOKEN }}