diff --git a/.github/workflows/artifacts.yaml b/.github/workflows/artifacts.yaml
index a3ca03a31df1fab6dfe94cd1bb6a39817b6d6e56..1c047ea4a27b77fc5b6522711f3984b58e0f6b86 100644
--- a/.github/workflows/artifacts.yaml
+++ b/.github/workflows/artifacts.yaml
@@ -194,7 +194,7 @@ jobs:
         if: inputs.publish
 
       - name: Run Trivy vulnerability scanner
-        uses: aquasecurity/trivy-action@b2933f565dbc598b29947660e66259e3c7bc8561 # 0.20.0
+        uses: aquasecurity/trivy-action@fd25fed6972e341ff0007ddb61f77e88103953c2 # 0.21.0
         with:
           input: image
           format: sarif