diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index 4abe734..4dafa90 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -30,7 +30,7 @@ jobs: echo "IMAGE_NAME=$IMAGE_NAME" >> $GITHUB_ENV - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.28.0 + uses: aquasecurity/trivy-action@0.33.1 with: image-ref: '${{ env.IMAGE_NAME }}' format: 'sarif' @@ -60,7 +60,7 @@ jobs: retention-days: 30 - name: Run Trivy filesystem scan - uses: aquasecurity/trivy-action@0.28.0 + uses: aquasecurity/trivy-action@0.33.1 with: scan-type: 'fs' scan-ref: '.'