From 6f8a58cbdfd64d89bca6abaa3e88eefce68555fc Mon Sep 17 00:00:00 2001 From: Reed Loden Date: Fri, 15 May 2026 09:56:21 -0700 Subject: [PATCH] Bump `actions/dependency-review-action` to v5 https://github.com/actions/dependency-review-action/releases/tag/v5.0.0 --- .github/workflows/dependency-review.yml | 3 ++- 1 file changed, 2 insertions(+), 1 deletion(-) diff --git a/.github/workflows/dependency-review.yml b/.github/workflows/dependency-review.yml index d3293f1..95a3950 100644 --- a/.github/workflows/dependency-review.yml +++ b/.github/workflows/dependency-review.yml @@ -90,7 +90,7 @@ jobs: if: >- steps.check-deps.outputs.deps_changed == 'true' && steps.check-revert.outputs.is_revert != 'true' - uses: actions/dependency-review-action@v4 + uses: actions/dependency-review-action@v5 with: base-ref: > ${{ @@ -104,6 +104,7 @@ jobs: vulnerability-check: true fail-on-severity: moderate + show-patched-versions: true license-check: true # comma-separated SPDX identifiers