diff --git a/.github/workflows/owasp.yml b/.github/workflows/owasp.yml index a8f43d15..5a1fd190 100644 --- a/.github/workflows/owasp.yml +++ b/.github/workflows/owasp.yml @@ -34,7 +34,7 @@ jobs: OSSINDEX_PASSWORD: ${{ secrets.OSSINDEX_PASSWORD }} run: | - mvn -DskipTests install -P OWASP_CHECK -DossIndexUsername=${{ env.OSSINDEX_USERNAME }} -DossIndexPassword=${{ env.OSSINDEX_PASSWORD }} + mvn -DskipTests install -P OWASP_CHECK -DossIndexUsername=${{ env.OSSINDEX_USERNAME }} -DossIndexPassword=${{ env.OSSINDEX_PASSWORD }} --ossIndexUrl "https://api.guide.sonatype.com" - name: Upload SARIF file uses: github/codeql-action/upload-sarif@a4e1a019f5e24960714ff6296aee04b736cbc3cf # v3.29.6 diff --git a/pom.xml b/pom.xml index 93d6c1f9..080ab0ab 100644 --- a/pom.xml +++ b/pom.xml @@ -78,7 +78,7 @@ org.owasp dependency-check-maven - 12.1.6 + 12.2.1 NVD_API_KEY