Skip to content

chore(deps): Bump multiple GHActions in the Codebase SAST Scan#95

Merged
hardillb merged 5 commits intomainfrom
chore-deps-dump-sast-scan-workflow
Mar 2, 2026
Merged

chore(deps): Bump multiple GHActions in the Codebase SAST Scan#95
hardillb merged 5 commits intomainfrom
chore-deps-dump-sast-scan-workflow

Conversation

@ppawlowski
Copy link
Collaborator

@ppawlowski ppawlowski commented Mar 2, 2026

Description

This pull request bumps following GitHub Actions in the Codebase SAST Scan reusable workflow:

  • aquasecurity/trivy-action: `0.34.1
  • actions/cache: 5.0.3
  • codeql-action/upload-sarif: 4.32.4`

Additionally, it pins the trivy version to 0.69.2 due to the aquasecurity/trivy-action#512

Related Issue(s)

Checklist

  • I have read the contribution guidelines
  • Suitable unit/system level tests have been added and they pass
  • Documentation has been updated
    • Upgrade instructions
    • Configuration details
    • Concepts
  • Changes flowforge.yml?
    • Issue/PR raised on FlowFuse/helm to update ConfigMap Template
    • Issue/PR raised on FlowFuse/CloudProject to update values for Staging/Production
  • Link to Changelog Entry PR, or note why one is not needed.

Labels

  • Includes a DB migration? -> add the area:migration label

@ppawlowski ppawlowski requested a review from hardillb March 2, 2026 15:04
@ppawlowski ppawlowski marked this pull request as ready for review March 2, 2026 15:38
@hardillb hardillb merged commit c2fad63 into main Mar 2, 2026
@hardillb hardillb deleted the chore-deps-dump-sast-scan-workflow branch March 2, 2026 15:47
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants