File tree 1 file changed +14
-4
lines changed
1 file changed +14
-4
lines changed Original file line number Diff line number Diff line change @@ -97,17 +97,27 @@ jobs:
97
97
name : " Executing dependency vulnerability checks"
98
98
env :
99
99
NVD_API_KEY : ${{ secrets.NVD_API_KEY }}
100
- sast-code- snyk :
100
+ sast-snyk :
101
101
runs-on : ubuntu-latest
102
102
needs : build
103
103
steps :
104
104
- uses : actions/checkout@v4
105
- - name : Run Snyk to static code analysis for vulnerabilities
106
- uses : snyk/actions/maven-3-jdk-21@master
105
+ - uses : snyk/actions/maven-3-jdk-21@master
106
+ name : Run Snyk scan for dependency and license
107
107
env :
108
108
SNYK_TOKEN : ${{ secrets.SNYK_TOKEN }}
109
109
with :
110
110
args : --severity-threshold=high
111
+ - uses : actions/setup-java@v4
112
+ with :
113
+ distribution : adopt
114
+ java-version : 21
115
+ check-latest : true
116
+ - uses : snyk/actions/setup@master
117
+ - name : Snyk SAST code
118
+ run : snyk code test
119
+ env :
120
+ SNYK_TOKEN : ${{ secrets.SNYK_TOKEN }}
111
121
sast-iac-trivy-hadolint :
112
122
runs-on : ubuntu-latest
113
123
needs : build
@@ -131,7 +141,7 @@ jobs:
131
141
- unit-test
132
142
- mutation-test
133
143
- dependency-vulnerability-analysis
134
- - sast-code- snyk
144
+ - sast-snyk
135
145
- sast-iac-trivy-hadolint
136
146
steps :
137
147
- uses : actions/checkout@v4
You can’t perform that action at this time.
0 commit comments