Skip to content

Commit f3e8343

Browse files
aikido-autofix[bot]triceo
authored andcommitted
fix(security): autofix 3rd party Github Actions should be pinned
1 parent 3202db0 commit f3e8343

File tree

2 files changed

+2
-2
lines changed

2 files changed

+2
-2
lines changed

.github/workflows/pull_request_maven_long_running.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -95,7 +95,7 @@ jobs:
9595

9696
# Build and test
9797
- name: "Setup GraalVM native image"
98-
uses: graalvm/setup-graalvm@v1
98+
uses: graalvm/setup-graalvm@01ed653ac833fe80569f1ef9f25585ba2811baab # v1
9999
with:
100100
java-version: ${{matrix.java-version}}
101101
distribution: 'graalvm-community'

.github/workflows/release.yml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -51,7 +51,7 @@ jobs:
5151
cache: 'maven'
5252

5353
- name: Set up Maven
54-
uses: stCarolas/setup-maven@v5
54+
uses: stCarolas/setup-maven@d6af6abeda15e98926a57b5aa970a96bb37f97d1 # v5
5555
with:
5656
maven-version: 3.9.3
5757

0 commit comments

Comments
 (0)