diff --git a/.github/workflows/build.yml b/.github/workflows/build.yml index 588df61..d60a79b 100644 --- a/.github/workflows/build.yml +++ b/.github/workflows/build.yml @@ -73,14 +73,14 @@ jobs: image-ref: ${{ fromJson(needs.build.outputs.nginx-tags).tags[0] }} steps: - name: Update Dependency Graph - uses: aquasecurity/trivy-action@0.32.0 + uses: aquasecurity/trivy-action@0.33.0 with: image-ref: ${{ matrix.image-ref }} format: 'github' output: '${{ matrix.name }}.sbom.json' github-pat: ${{ secrets.GITHUB_TOKEN }} - name: Generate Sarif Report - uses: aquasecurity/trivy-action@0.32.0 + uses: aquasecurity/trivy-action@0.33.0 with: image-ref: ${{ matrix.image-ref }} format: sarif @@ -92,7 +92,7 @@ jobs: category: ${{ matrix.name }} - name: Generate SBOM if: startsWith(github.ref, 'refs/tags/') - uses: aquasecurity/trivy-action@0.32.0 + uses: aquasecurity/trivy-action@0.33.0 with: image-ref: ${{ matrix.image-ref }} format: cyclonedx