Skip to content

Commit 49dcbff

Browse files
ci: pin trivy
1 parent 2c5d1ca commit 49dcbff

File tree

2 files changed

+3
-3
lines changed

2 files changed

+3
-3
lines changed

trivy-fs-scan/action.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -73,7 +73,7 @@ runs:
7373
touch .trivyignore
7474
7575
- name: Run Trivy vulnerability scanner
76-
uses: aquasecurity/trivy-action@master
76+
uses: aquasecurity/trivy-action@9ea583eb67910444b1f64abf338bd2e105a0a93d
7777
with:
7878
scan-type: 'fs'
7979
scan-ref: ${{ inputs.scan-ref }}

trivy-image-scan/action.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -86,7 +86,7 @@ runs:
8686
cat $GITHUB_ACTION_PATH/.trivyignore >> .trivyignore
8787
8888
- name: Run Trivy vulnerability scanner
89-
uses: aquasecurity/trivy-action@master
89+
uses: aquasecurity/trivy-action@9ea583eb67910444b1f64abf338bd2e105a0a93d
9090
with:
9191
trivyignores: ${{ inputs.trivyignores }}
9292
image-ref: ${{ inputs.image }}:${{ steps.tag.outputs.TRIVY_IMAGE_TAG }}
@@ -104,7 +104,7 @@ runs:
104104

105105
- name: Rerun Trivy vulnerability scanner with logging
106106
if: failure() && inputs.output-mode != 'log'
107-
uses: aquasecurity/trivy-action@master
107+
uses: aquasecurity/trivy-action@9ea583eb67910444b1f64abf338bd2e105a0a93d
108108
with:
109109
trivyignores: ${{ inputs.trivyignores }}
110110
image-ref: ${{ inputs.image }}:${{ steps.tag.outputs.TRIVY_IMAGE_TAG }}

0 commit comments

Comments
 (0)