From 64187015c8d2513b822ded1dea84a88b6a2e30d4 Mon Sep 17 00:00:00 2001 From: andyzhangx Date: Sat, 6 Jul 2024 12:06:57 +0000 Subject: [PATCH] test: fix trivy action failure test: ignore azcopy CVE-2024-24791 --- .github/workflows/trivy.yaml | 2 +- .trivyignore | 1 + 2 files changed, 2 insertions(+), 1 deletion(-) create mode 100644 .trivyignore diff --git a/.github/workflows/trivy.yaml b/.github/workflows/trivy.yaml index 970b9f7b3..a7cc9ea2a 100644 --- a/.github/workflows/trivy.yaml +++ b/.github/workflows/trivy.yaml @@ -12,7 +12,7 @@ jobs: - name: Set up Go 1.x uses: actions/setup-go@v5 with: - go-version: 1.22.4 + go-version: 1.22.5 id: go - name: Checkout code diff --git a/.trivyignore b/.trivyignore new file mode 100644 index 000000000..aa862cb02 --- /dev/null +++ b/.trivyignore @@ -0,0 +1 @@ +CVE-2024-24791