diff --git a/.github/workflows/pre-release-check.yml b/.github/workflows/pre-release-check.yml index 32b24cfc..051c23b4 100644 --- a/.github/workflows/pre-release-check.yml +++ b/.github/workflows/pre-release-check.yml @@ -76,7 +76,7 @@ jobs: - name: Build and push if: ${{ matrix.component == 'cega-mock' || matrix.component == 'mq-interceptor' }} - uses: docker/build-push-action@v6.18.0 + uses: docker/build-push-action@v6.19.2 with: context: ./services/${{ matrix.component }} push: true @@ -92,7 +92,7 @@ jobs: - name: Build and push if: ${{ matrix.component == 'localega-tsd-proxy' || matrix.component == 'tsd-api-mock'}} - uses: docker/build-push-action@v6.18.0 + uses: docker/build-push-action@v6.19.2 with: file: ./services/${{ matrix.component }}/Dockerfile context: . diff --git a/.github/workflows/scan-images.yml b/.github/workflows/scan-images.yml index 7bcc1f02..0e5ff356 100644 --- a/.github/workflows/scan-images.yml +++ b/.github/workflows/scan-images.yml @@ -44,7 +44,7 @@ jobs: echo "repo_name=$REPO_NAME" >> $GITHUB_ENV - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.34.1 + uses: aquasecurity/trivy-action@0.34.2 with: image-ref: ghcr.io/${{ env.repo_name }}:localega-tsd-proxy-${{ github.event.number }} format: 'sarif' @@ -71,7 +71,7 @@ jobs: REPO_NAME=$(echo "${{ github.repository }}" | tr '[:upper:]' '[:lower:]') echo "repo_name=$REPO_NAME" >> $GITHUB_ENV - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@0.34.1 + uses: aquasecurity/trivy-action@0.34.2 with: image-ref: ghcr.io/${{ env.repo_name }}:mq-interceptor-${{ github.event.number }} format: 'sarif'