From eda7e446f2497dca9330e4c2671d55249491b8fd Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 5 Aug 2024 06:26:41 +0000 Subject: [PATCH] chore(deps): Bump aquasecurity/trivy-action from 0.20.0 to 0.24.0 Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action) from 0.20.0 to 0.24.0. - [Release notes](https://github.com/aquasecurity/trivy-action/releases) - [Commits](https://github.com/aquasecurity/trivy-action/compare/b2933f565dbc598b29947660e66259e3c7bc8561...6e7b7d1fd3e4fef0c5fa8cce1229c54b2c9bd0d8) --- updated-dependencies: - dependency-name: aquasecurity/trivy-action dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- .github/workflows/image-build.yaml | 2 +- .github/workflows/image-publish.yaml | 2 +- .github/workflows/nightly-scan.yaml | 2 +- .github/workflows/release.yaml | 2 +- 4 files changed, 4 insertions(+), 4 deletions(-) diff --git a/.github/workflows/image-build.yaml b/.github/workflows/image-build.yaml index 1ddf530..9b39f24 100644 --- a/.github/workflows/image-build.yaml +++ b/.github/workflows/image-build.yaml @@ -30,7 +30,7 @@ jobs: - name: docker build run: VERSION=${{ github.ref_name }} make docker-build - name: Trivy Scan Image - uses: aquasecurity/trivy-action@b2933f565dbc598b29947660e66259e3c7bc8561 # v0.20.0 + uses: aquasecurity/trivy-action@6e7b7d1fd3e4fef0c5fa8cce1229c54b2c9bd0d8 # v0.24.0 with: scan-type: 'fs' ignore-unfixed: true diff --git a/.github/workflows/image-publish.yaml b/.github/workflows/image-publish.yaml index 2e9aef4..5939c5d 100644 --- a/.github/workflows/image-publish.yaml +++ b/.github/workflows/image-publish.yaml @@ -34,7 +34,7 @@ jobs: username: ${{ github.repository_owner }} password: ${{ secrets.GITHUB_TOKEN }} - name: Run Trivy vulnerability scanner in repo mode - uses: aquasecurity/trivy-action@b2933f565dbc598b29947660e66259e3c7bc8561 # v0.20.0 + uses: aquasecurity/trivy-action@6e7b7d1fd3e4fef0c5fa8cce1229c54b2c9bd0d8 # v0.24.0 with: scan-type: "fs" ignore-unfixed: true diff --git a/.github/workflows/nightly-scan.yaml b/.github/workflows/nightly-scan.yaml index 05c3b8c..d28e1a6 100644 --- a/.github/workflows/nightly-scan.yaml +++ b/.github/workflows/nightly-scan.yaml @@ -54,7 +54,7 @@ jobs: exit-code: '1' - name: Convert trivy json file to tabular form - uses: aquasecurity/trivy-action@0.12.0 + uses: aquasecurity/trivy-action@0.24.0 if: always() && steps.trivy-scan.conclusion == 'failure' with: scan-type: convert diff --git a/.github/workflows/release.yaml b/.github/workflows/release.yaml index a4b5fd3..2cebf4a 100644 --- a/.github/workflows/release.yaml +++ b/.github/workflows/release.yaml @@ -30,7 +30,7 @@ jobs: username: ${{ github.repository_owner }} password: ${{ secrets.GITHUB_TOKEN }} - name: Run Trivy vulnerability scanner in repo mode - uses: aquasecurity/trivy-action@b2933f565dbc598b29947660e66259e3c7bc8561 # v0.20.0 + uses: aquasecurity/trivy-action@6e7b7d1fd3e4fef0c5fa8cce1229c54b2c9bd0d8 # v0.24.0 with: scan-type: "fs" ignore-unfixed: true