diff --git a/.github/workflows/build-dev.yaml b/.github/workflows/build-dev.yaml index 93fcc8e80..74cb28c0a 100644 --- a/.github/workflows/build-dev.yaml +++ b/.github/workflows/build-dev.yaml @@ -54,7 +54,7 @@ jobs: fail_ci_if_error: true - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.19.0 + uses: aquasecurity/trivy-action@0.24.0 with: scan-type: "fs" ignore-unfixed: true diff --git a/.github/workflows/trivy-scan.yaml b/.github/workflows/trivy-scan.yaml index 3e966d0cb..50e914514 100644 --- a/.github/workflows/trivy-scan.yaml +++ b/.github/workflows/trivy-scan.yaml @@ -39,7 +39,7 @@ jobs: devbox run -- ko build -B -t ${{ github.sha }} --platform=$PLATFORMS . - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.19.0 + uses: aquasecurity/trivy-action@0.24.0 with: image-ref: "ko.local/${{ env.REPOSITORY_NAME }}:${{ github.sha }}" format: "sarif"