diff --git a/.github/workflows/reusable-dependency-review.yml b/.github/workflows/reusable-dependency-review.yml index f9f1ae5..35ad56e 100644 --- a/.github/workflows/reusable-dependency-review.yml +++ b/.github/workflows/reusable-dependency-review.yml @@ -64,7 +64,7 @@ jobs: - name: Dependency Review if: github.event_name == 'pull_request' - uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4 + uses: actions/dependency-review-action@2031cfc080254a8a887f58cffee85186f0e49e48 # v4.9.0 with: fail-on-severity: ${{ inputs.fail-on-severity }} allow-ghsas: ${{ inputs.allow-ghsas }} @@ -74,7 +74,7 @@ jobs: - name: Dependency Review if: github.event_name == 'push' || github.event_name == 'schedule' - uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4 + uses: actions/dependency-review-action@2031cfc080254a8a887f58cffee85186f0e49e48 # v4.9.0 with: fail-on-severity: ${{ inputs.fail-on-severity }} allow-ghsas: ${{ inputs.allow-ghsas }}