diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index aaa7929..567e52a 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -40,7 +40,7 @@ jobs: # Introduced vulnerabilities are still blocked by audit:prod in ci.yml. - name: Review dependency changes continue-on-error: true - uses: actions/dependency-review-action@2031cfc080254a8a887f58cffee85186f0e49e48 # v4.9.0 + uses: actions/dependency-review-action@a1d282b36b6f3519aa1f3fc636f609c47dddb294 # v5.0.0 secrets: name: Secret scan