Skip to content

Commit 5404398

Browse files
Priyankasaggu11929adinilfeld
authored andcommitted
security: Update trivy-action to v0.35.0 (#785)
Updates aquasecurity/trivy-action from mutable references to SHA-pinned version to address security vulnerabilities. - Updates to v0.35.0 (57a97c7e) - Pins to specific SHA for immutability - Addresses issue: aquasecurity/trivy#10425 Signed-off-by: Priyanka Saggu <priyankasaggu11929@gmail.com>
1 parent 41902a5 commit 5404398

File tree

1 file changed

+1
-1
lines changed

1 file changed

+1
-1
lines changed

.github/workflows/trivy.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -29,7 +29,7 @@ jobs:
2929
-f ./Dockerfile .
3030
3131
- name: Run Trivy vulnerability scanner
32-
uses: aquasecurity/trivy-action@master
32+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 # v0.35.0
3333
env:
3434
TRIVY_DB_REPOSITORY: "public.ecr.aws/aquasecurity/trivy-db:2"
3535
with:

0 commit comments

Comments
 (0)