Skip to content

Commit fd52d38

Browse files
committed
add wiz scan to the pipeline (SWG-14342)
1 parent ddbe8aa commit fd52d38

File tree

1 file changed

+12
-2
lines changed

1 file changed

+12
-2
lines changed

.github/workflows/maven-master-pulls.yml

Lines changed: 12 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -68,7 +68,7 @@ jobs:
6868

6969
steps:
7070
- name: Login to Docker Hub
71-
uses: docker/login-action@v2
71+
uses: docker/login-action@v3
7272
with:
7373
username: ${{ secrets.DOCKERHUB_SB_USERNAME }}
7474
password: ${{ secrets.DOCKERHUB_SB_PASSWORD }}
@@ -85,10 +85,20 @@ jobs:
8585
- name: Pull Docker image for scanning
8686
run: docker pull swaggerapi/swagger-codegen-cli:latest
8787

88+
- name: Checkout code
89+
uses: actions/checkout@v3
90+
91+
- name: Set up Docker Buildx
92+
uses: docker/setup-buildx-action@v3
93+
94+
- name: Build Docker image
95+
run: |
96+
docker build -t swaggerapi/swagger-codegen-cli/scan:latest .
97+
8898
- name: Run wiz-cli docker image scan
8999
run: |
90100
./wizcli docker scan --image $TAG --policy "$POLICY"
91101
./wizcli docker tag --image $TAG
92102
env:
93-
TAG: swaggerapi/swagger-codegen-cli:latest
103+
TAG: swaggerapi/swagger-codegen-cli/scan:latest
94104
POLICY: "SmartBear default vulnerabilities policy"

0 commit comments

Comments
 (0)