From d3a339a4328c8601d87923c4bb90176e324d790d Mon Sep 17 00:00:00 2001 From: Simone Lindner Date: Fri, 24 Nov 2023 09:09:28 +0100 Subject: [PATCH] fixes for trivy scan failure --- .github/workflows/trivy.yml | 10 ++++------ 1 file changed, 4 insertions(+), 6 deletions(-) diff --git a/.github/workflows/trivy.yml b/.github/workflows/trivy.yml index bf14c39..9c93151 100644 --- a/.github/workflows/trivy.yml +++ b/.github/workflows/trivy.yml @@ -44,15 +44,14 @@ jobs: uses: actions/checkout@v3 - name: Run Trivy vulnerability scanner in repo mode - uses: aquasecurity/trivy-action@master + uses: aquasecurity/trivy-action@0.14.0 with: scan-type: "config" # ignore-unfixed: true - exit-code: "1" hide-progress: false format: "sarif" output: "trivy-results1.sarif" - severity: "CRITICAL,HIGH" + vuln-type: "os,library" - name: Upload Trivy scan results to GitHub Security tab uses: github/codeql-action/upload-sarif@v2 @@ -80,15 +79,14 @@ jobs: run: mvn clean package - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@master + uses: aquasecurity/trivy-action@0.14.0 with: image-ref: "tractusx/sldt-bpn-discovery:latest" # ignore-unfixed: true - exit-code: "1" hide-progress: false format: "sarif" output: "trivy-results-bpn-discovery.sarif" - severity: "CRITICAL,HIGH" + vuln-type: "os,library" - name: Upload Trivy scan results to GitHub Security tab uses: github/codeql-action/upload-sarif@v2