Skip to content

ci: pin shivammathur/setup-php to 2.37.1#1

Open
fballiano wants to merge 1 commit into
mainfrom
ci/pin-setup-php-2.37.1
Open

ci: pin shivammathur/setup-php to 2.37.1#1
fballiano wants to merge 1 commit into
mainfrom
ci/pin-setup-php-2.37.1

Conversation

@fballiano
Copy link
Copy Markdown
Contributor

Pins shivammathur/setup-php to 2.37.1, resolving GHSA-5wxr-w449-57cm as flagged by the org SBOM scan.

Files changed: 4 workflow file(s).

Resolves GHSA-5wxr-w449-57cm flagged by the org SBOM scan. The floating
@v2 tag already resolves to a patched release at runtime; pinning the
version makes that explicit and clears the scanner finding.
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant