diff --git a/.github/workflows/build-dev.yaml b/.github/workflows/build-dev.yaml index a1ddb7c169..57b45db38f 100644 --- a/.github/workflows/build-dev.yaml +++ b/.github/workflows/build-dev.yaml @@ -35,7 +35,7 @@ jobs: uses: codecov/codecov-action@v3.1.4 - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.11.2 + uses: aquasecurity/trivy-action@0.12.0 with: scan-type: "fs" ignore-unfixed: true diff --git a/.github/workflows/trivy-scan.yaml b/.github/workflows/trivy-scan.yaml index 927f933b72..26c62ff3fb 100644 --- a/.github/workflows/trivy-scan.yaml +++ b/.github/workflows/trivy-scan.yaml @@ -46,7 +46,7 @@ jobs: ko build -B -t ${{ github.sha }} --platform=$PLATFORMS . - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.11.2 + uses: aquasecurity/trivy-action@0.12.0 with: image-ref: "ko.local/${{ env.REPOSITORY_NAME }}:${{ github.sha }}" format: "sarif"