diff --git a/.github/workflows/container-publish.yml b/.github/workflows/container-publish.yml index ea030e4..c3ad5d5 100644 --- a/.github/workflows/container-publish.yml +++ b/.github/workflows/container-publish.yml @@ -65,7 +65,7 @@ jobs: sbom: true - name: Trivy image scan - uses: aquasecurity/trivy-action@0.24.0 + uses: aquasecurity/trivy-action@0.34.0 with: image-ref: ${{ env.REGISTRY }}/${{ env.OWNER_LC }}/${{ matrix.image }}:sha-${{ github.sha }} format: table diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index a793904..a5df777 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -38,7 +38,7 @@ jobs: uses: actions/checkout@v4 - name: Trivy filesystem scan - uses: aquasecurity/trivy-action@0.24.0 + uses: aquasecurity/trivy-action@0.34.0 with: scan-type: fs scan-ref: . @@ -47,7 +47,7 @@ jobs: exit-code: "1" - name: Trivy config scan - uses: aquasecurity/trivy-action@0.24.0 + uses: aquasecurity/trivy-action@0.34.0 with: scan-type: config scan-ref: .