diff --git a/.github/workflows/image-build.yaml b/.github/workflows/image-build.yaml index 88f5bad..0a0bc9b 100644 --- a/.github/workflows/image-build.yaml +++ b/.github/workflows/image-build.yaml @@ -30,7 +30,7 @@ jobs: - name: docker build run: VERSION=${{ github.ref_name }} make docker-build - name: Trivy Scan Image - uses: aquasecurity/trivy-action@6e7b7d1fd3e4fef0c5fa8cce1229c54b2c9bd0d8 # v0.24.0 + uses: aquasecurity/trivy-action@a20de5420d57c4102486cdd9578b45609c99d7eb # v0.26.0 with: scan-type: 'fs' ignore-unfixed: true diff --git a/.github/workflows/image-publish.yaml b/.github/workflows/image-publish.yaml index d8c81c1..8afe13e 100644 --- a/.github/workflows/image-publish.yaml +++ b/.github/workflows/image-publish.yaml @@ -34,7 +34,7 @@ jobs: username: ${{ github.repository_owner }} password: ${{ secrets.GITHUB_TOKEN }} - name: Run Trivy vulnerability scanner in repo mode - uses: aquasecurity/trivy-action@6e7b7d1fd3e4fef0c5fa8cce1229c54b2c9bd0d8 # v0.24.0 + uses: aquasecurity/trivy-action@a20de5420d57c4102486cdd9578b45609c99d7eb # v0.26.0 with: scan-type: "fs" ignore-unfixed: true diff --git a/.github/workflows/nightly-scan.yaml b/.github/workflows/nightly-scan.yaml index c96bc89..3c08f7e 100644 --- a/.github/workflows/nightly-scan.yaml +++ b/.github/workflows/nightly-scan.yaml @@ -54,7 +54,7 @@ jobs: exit-code: '1' - name: Convert trivy json file to tabular form - uses: aquasecurity/trivy-action@0.24.0 + uses: aquasecurity/trivy-action@0.26.0 if: always() && steps.trivy-scan.conclusion == 'failure' with: scan-type: convert diff --git a/.github/workflows/release.yaml b/.github/workflows/release.yaml index a3c9a82..3928242 100644 --- a/.github/workflows/release.yaml +++ b/.github/workflows/release.yaml @@ -30,7 +30,7 @@ jobs: username: ${{ github.repository_owner }} password: ${{ secrets.GITHUB_TOKEN }} - name: Run Trivy vulnerability scanner in repo mode - uses: aquasecurity/trivy-action@6e7b7d1fd3e4fef0c5fa8cce1229c54b2c9bd0d8 # v0.24.0 + uses: aquasecurity/trivy-action@a20de5420d57c4102486cdd9578b45609c99d7eb # v0.26.0 with: scan-type: "fs" ignore-unfixed: true