diff --git a/ql/src/Security/CWE-829/ArtifactPoisoning.ql b/ql/src/Security/CWE-829/ArtifactPoisoning.ql index 5b0c4fc4e69..348b6bbdf08 100644 --- a/ql/src/Security/CWE-829/ArtifactPoisoning.ql +++ b/ql/src/Security/CWE-829/ArtifactPoisoning.ql @@ -16,7 +16,7 @@ import codeql.actions.security.ArtifactPoisoningQuery from LocalJob job, ArtifactDownloadStep download, Step run where - job.getWorkflow().getATriggerEvent() = "workflow_run" and + job.getWorkflow().getATriggerEvent() = ["workflow_run", "workflow_dispatch"] and (run instanceof Run or run instanceof UsesStep) and exists(int i, int j | job.getStep(i) = download and