diff --git a/.github/workflows/build-dev.yaml b/.github/workflows/build-dev.yaml index 31372f0..792b595 100644 --- a/.github/workflows/build-dev.yaml +++ b/.github/workflows/build-dev.yaml @@ -25,7 +25,7 @@ jobs: run: make build - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.13.0 + uses: aquasecurity/trivy-action@0.13.1 with: scan-type: "fs" ignore-unfixed: true diff --git a/.github/workflows/trivy-scan.yaml b/.github/workflows/trivy-scan.yaml index 6e8a534..d913956 100644 --- a/.github/workflows/trivy-scan.yaml +++ b/.github/workflows/trivy-scan.yaml @@ -43,7 +43,7 @@ jobs: ko build -B -t ${{ github.sha }} --platform=$PLATFORMS ./cmd/${{ env.REPOSITORY_NAME }} - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.13.0 + uses: aquasecurity/trivy-action@0.13.1 with: image-ref: "ko.local/${{ env.REPOSITORY_NAME }}:${{ github.sha }}" format: "sarif"