Skip to content

Commit ef000bf

Browse files
author
Aisura
committed
ci: fix trivy action commit pin
Use the actual commit backing aquasecurity/trivy-action v0.35.0 so GitHub Actions can resolve the pinned action version.
1 parent 44ee4a0 commit ef000bf

1 file changed

Lines changed: 4 additions & 4 deletions

File tree

.github/workflows/ndc-python-lambda-connector.yaml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -102,7 +102,7 @@ jobs:
102102
tags: ${{ env.DOCKER_REGISTRY }}/${{ env.DOCKER_IMAGE_NAME }}:${{ github.sha }}
103103

104104
- name: Run Trivy vulnerability scanner (json output)
105-
uses: aquasecurity/trivy-action@854c61d34a550a9fcbab3bc59e55b868c15d1962
105+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
106106
with:
107107
image-ref: ${{ env.DOCKER_REGISTRY }}/${{ env.DOCKER_IMAGE_NAME }}:${{ github.sha }}
108108
format: json
@@ -124,7 +124,7 @@ jobs:
124124
team=engine
125125
126126
- name: Fail build on High/Critical Vulnerabilities
127-
uses: aquasecurity/trivy-action@854c61d34a550a9fcbab3bc59e55b868c15d1962
127+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
128128
with:
129129
skip-setup-trivy: true
130130
image-ref: ${{ env.DOCKER_REGISTRY }}/${{ env.DOCKER_IMAGE_NAME }}:${{ github.sha }}
@@ -177,7 +177,7 @@ jobs:
177177
echo "image_tag=$IMAGE_TAG" >> $GITHUB_OUTPUT
178178
179179
- name: Run Trivy vulnerability scanner (json output)
180-
uses: aquasecurity/trivy-action@854c61d34a550a9fcbab3bc59e55b868c15d1962
180+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
181181
with:
182182
image-ref: ${{ steps.get-image-tag.outputs.image_tag }}
183183
format: json
@@ -199,7 +199,7 @@ jobs:
199199
team=engine
200200
201201
- name: Fail build on High/Critical Vulnerabilities
202-
uses: aquasecurity/trivy-action@854c61d34a550a9fcbab3bc59e55b868c15d1962
202+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1
203203
with:
204204
skip-setup-trivy: true
205205
image-ref: ${{ steps.get-image-tag.outputs.image_tag }}

0 commit comments

Comments
 (0)