Merge pull request #350 from wneessen/dependabot/github_actions/actions/dependency-review-action-4.4.0

Bump actions/dependency-review-action from 4.3.5 to 4.4.0
This commit is contained in:
Winni Neessen 2024-10-29 14:59:58 +01:00 committed by GitHub
commit d7e0b48567
No known key found for this signature in database
GPG key ID: B5690EEEBB952194

View file

@ -99,7 +99,7 @@ jobs:
- name: Checkout Code
uses: actions/checkout@61b9e3751b92087fd0b06925ba6dd6314e06f089 # master
- name: 'Dependency Review'
uses: actions/dependency-review-action@a6993e2c61fd5dc440b409aa1d6904921c5e1894 # v4.3.5
uses: actions/dependency-review-action@4081bf99e2866ebe428fc0477b69eb4fcda7220a # v4.4.0
with:
base-ref: ${{ github.event.pull_request.base.sha || 'main' }}
head-ref: ${{ github.event.pull_request.head.sha || github.ref }}