From ea983f2304f3edc0deca19a7251204673f5b9cce Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Mon, 21 Oct 2024 19:52:40 +0000 Subject: [PATCH] chore: bump aquasecurity/trivy-action in /.github/workflows Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action) from 0.27.0 to 0.28.0. - [Release notes](https://github.com/aquasecurity/trivy-action/releases) - [Commits](https://github.com/aquasecurity/trivy-action/compare/0.27.0...0.28.0) --- updated-dependencies: - dependency-name: aquasecurity/trivy-action dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- .github/workflows/component-scan.yml | 8 ++++---- 1 file changed, 4 insertions(+), 4 deletions(-) diff --git a/.github/workflows/component-scan.yml b/.github/workflows/component-scan.yml index 12e5a833..98aa08f1 100644 --- a/.github/workflows/component-scan.yml +++ b/.github/workflows/component-scan.yml @@ -24,7 +24,7 @@ jobs: - name: Scan all the vulnerabilities and generate JSON report if: always() - uses: aquasecurity/trivy-action@0.27.0 + uses: aquasecurity/trivy-action@0.28.0 with: image-ref: image:latest format: 'json' @@ -33,7 +33,7 @@ jobs: - name: Save vulnerabilities report in tabular format if: always() - uses: aquasecurity/trivy-action@0.27.0 + uses: aquasecurity/trivy-action@0.28.0 with: image-ref: trivy-results.json scan-type: convert @@ -43,7 +43,7 @@ jobs: - name: Display vulnerabilities report if: always() - uses: aquasecurity/trivy-action@0.27.0 + uses: aquasecurity/trivy-action@0.28.0 with: image-ref: trivy-results.json scan-type: convert @@ -51,7 +51,7 @@ jobs: - name: Fail on high and critical vulnerabilities if: always() - uses: aquasecurity/trivy-action@0.27.0 + uses: aquasecurity/trivy-action@0.28.0 with: image-ref: trivy-results.json scan-type: convert