diff --git a/.github/workflows/scripts/codeScan/bandit.sh b/.github/workflows/scripts/codeScan/bandit.sh index e680e22f8d..840aa0eb82 100644 --- a/.github/workflows/scripts/codeScan/bandit.sh +++ b/.github/workflows/scripts/codeScan/bandit.sh @@ -16,7 +16,7 @@ source /GenAIComps/.github/workflows/scripts/change_color pip install bandit==1.7.8 log_dir=/GenAIComps/.github/workflows/scripts/codeScan -python -m bandit -r -lll -iii /GenAIComps >${log_dir}/bandit.log +python -m bandit -r -lll -iii /GenAIComps 2>&1 | tee ${log_dir}/bandit.log exit_code=$? $BOLD_YELLOW && echo " ----------------- Current log file output start --------------------------" diff --git a/.github/workflows/scripts/codeScan/trellix.sh b/.github/workflows/scripts/codeScan/trellix.sh index 2d47552298..fd990bb9c7 100644 --- a/.github/workflows/scripts/codeScan/trellix.sh +++ b/.github/workflows/scripts/codeScan/trellix.sh @@ -39,13 +39,13 @@ echo "Downloading latest defs from $DEFS_URL/$filename2..." \ && echo "SUCCESS" || fail echo "Extracting latest defs..." \ - && unzip $filename2 -d /usr/local/uvscan \ + && unzip -o $filename2 -d /usr/local/uvscan \ && echo "SUCCESS" || fail echo "--- Scanning ---" ENV_SCAN_OPTS="--analyze --mime --program --recursive --unzip --threads 4 --summary --verbose --html=${workspace}/.github/workflows/scripts/codeScan/report.html" echo "Scan Options: $ENV_SCAN_OPTS" -uvscan $ENV_SCAN_OPTS /GenAIComps > ${log_dir}/trellix.log +uvscan $ENV_SCAN_OPTS ${workspace} 2>&1 | tee ${log_dir}/trellix.log if [[ $(grep "Possibly Infected" ${log_dir}/trellix.log | sed 's/[^0-9]//g') != 0 ]]; then