From 697af7162acf126cfe733c2be5fd447d884e144f Mon Sep 17 00:00:00 2001 From: andyzhangx Date: Sat, 6 Jul 2024 12:06:57 +0000 Subject: [PATCH] test: fix trivy action failure test: ignore azcopy CVE-2024-24791 --- .github/workflows/trivy.yaml | 2 +- .trivyignore | 1 + 2 files changed, 2 insertions(+), 1 deletion(-) create mode 100644 .trivyignore diff --git a/.github/workflows/trivy.yaml b/.github/workflows/trivy.yaml index 8ee595800..676f2cf56 100644 --- a/.github/workflows/trivy.yaml +++ b/.github/workflows/trivy.yaml @@ -12,7 +12,7 @@ jobs: - name: Set up Go 1.x uses: actions/setup-go@v4 with: - go-version: 1.22.4 + go-version: 1.22.5 id: go - name: Checkout code diff --git a/.trivyignore b/.trivyignore new file mode 100644 index 000000000..aa862cb02 --- /dev/null +++ b/.trivyignore @@ -0,0 +1 @@ +CVE-2024-24791