@@ -51,10 +51,10 @@ jobs:
51
51
52
52
steps :
53
53
- name : Checkout repository
54
- uses : actions/checkout@9bb56186c3b09b4f86b1c65136769dd318469633 # v4.1.2
54
+ uses : actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6
55
55
56
56
- name : Run Trivy vulnerability scanner in repo mode
57
- uses : aquasecurity/trivy-action@d710430a6722f083d3b36b8339ff66b32f22ee55 # v0.19 .0
57
+ uses : aquasecurity/trivy-action@595be6a0f6560a0a8fc419ddf630567fc623531d # v0.22 .0
58
58
with :
59
59
scan-type : " config"
60
60
hide-progress : false
63
63
vuln-type : " os,library"
64
64
65
65
- name : Upload Trivy scan results to GitHub Security tab
66
- uses : github/codeql-action/upload-sarif@df5a14dc28094dc936e103b37d749c6628682b60 # v3.25.0
66
+ uses : github/codeql-action/upload-sarif@2e230e8fe0ad3a14a340ad0815ddb96d599d2aff # v3.25.8
67
67
if : always()
68
68
with :
69
69
sarif_file : " trivy-results1.sarif"
77
77
78
78
steps :
79
79
- name : Checkout repository
80
- uses : actions/checkout@9bb56186c3b09b4f86b1c65136769dd318469633 # v4.1.2
80
+ uses : actions/checkout@a5ac7e51b41094c92402da3b24376905380afc29 # v4.1.6
81
81
82
82
# It's also possible to scan your private registry with Trivy's built-in image scan.
83
83
# All you have to do is set ENV vars.
86
86
# For public images, no ENV vars must be set.
87
87
- name : Run Trivy vulnerability scanner
88
88
if : always()
89
- uses : aquasecurity/trivy-action@d710430a6722f083d3b36b8339ff66b32f22ee55 # v0.19 .0
89
+ uses : aquasecurity/trivy-action@595be6a0f6560a0a8fc419ddf630567fc623531d # v0.22 .0
90
90
with :
91
91
# Path to Docker image
92
92
image-ref : " ${{ env.IMAGE_NAMESPACE }}/${{ env.IMAGE_NAME }}:latest"
96
96
97
97
- name : Upload Trivy scan results to GitHub Security tab
98
98
if : always()
99
- uses : github/codeql-action/upload-sarif@df5a14dc28094dc936e103b37d749c6628682b60 # v3.25.0
99
+ uses : github/codeql-action/upload-sarif@2e230e8fe0ad3a14a340ad0815ddb96d599d2aff # v3.25.8
100
100
with :
101
101
sarif_file : " trivy-results2.sarif"
0 commit comments