Merge pull request #500 from apache/dependabot/github_actions/actions/dependency-review-action-4.3.5

Bump actions/dependency-review-action from 4.3.4 to 4.3.5
This commit is contained in:
Gary Gregory 2024-10-25 08:20:24 -04:00 committed by GitHub
commit 3d461799fe
No known key found for this signature in database
GPG Key ID: B5690EEEBB952194
1 changed files with 1 additions and 1 deletions

View File

@ -28,7 +28,7 @@ jobs:
- name: 'Checkout Repository'
uses: actions/checkout@eef61447b9ff4aafe5dcd4e0bbf5d482be7e7871 # v4.2.1
- name: 'Dependency Review PR'
uses: actions/dependency-review-action@5a2ce3f5b92ee19cbb1541a4984c76d921601d7c # v4.3.4
uses: actions/dependency-review-action@a6993e2c61fd5dc440b409aa1d6904921c5e1894 # v4.3.5
with:
base-ref: ${{ github.event.before }}
head-ref: ${{ github.sha }}