Skip to content

Commit c032e71

Browse files
committed
fix: [#251] update docker build context and action versions
1 parent defaaaa commit c032e71

File tree

1 file changed

+5
-5
lines changed

1 file changed

+5
-5
lines changed

.github/workflows/docker-security-scan.yml

Lines changed: 5 additions & 5 deletions
Original file line numberDiff line numberDiff line change
@@ -41,10 +41,10 @@ jobs:
4141
run: |
4242
docker build -t torrust-tracker-deployer/${{ matrix.image.name }}:latest \
4343
-f ${{ matrix.image.dockerfile }} \
44-
${{ matrix.image.context }}
44+
.
4545
4646
- name: Run Trivy vulnerability scanner
47-
uses: aquasecurity/trivy-action@master
47+
uses: aquasecurity/trivy-action@0.28.0
4848
with:
4949
image-ref: torrust-tracker-deployer/${{ matrix.image.name }}:latest
5050
format: "sarif"
@@ -53,7 +53,7 @@ jobs:
5353
exit-code: "1"
5454

5555
- name: Upload Trivy results to GitHub Security
56-
uses: github/codeql-action/upload-sarif@v3
56+
uses: github/codeql-action/upload-sarif@v4
5757
if: always()
5858
with:
5959
sarif_file: "trivy-results-${{ matrix.image.name }}.sarif"
@@ -74,7 +74,7 @@ jobs:
7474
- prom/prometheus:v3.0.1
7575
steps:
7676
- name: Run Trivy vulnerability scanner
77-
uses: aquasecurity/trivy-action@master
77+
uses: aquasecurity/trivy-action@0.28.0
7878
with:
7979
image-ref: ${{ matrix.image }}
8080
format: "sarif"
@@ -83,7 +83,7 @@ jobs:
8383
exit-code: "1"
8484

8585
- name: Upload Trivy results to GitHub Security
86-
uses: github/codeql-action/upload-sarif@v3
86+
uses: github/codeql-action/upload-sarif@v4
8787
if: always()
8888
with:
8989
sarif_file: "trivy-results.sarif"

0 commit comments

Comments
 (0)