Skip to content

chore(deps)(deps): bump aquasecurity/trivy-action from 0.35.0 to 0.36.0 in the actions-patch-minor group across 1 directory#55

Open
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions-patch-minor-d884b4a175
Open

chore(deps)(deps): bump aquasecurity/trivy-action from 0.35.0 to 0.36.0 in the actions-patch-minor group across 1 directory#55
dependabot[bot] wants to merge 1 commit into
mainfrom
dependabot/github_actions/actions-patch-minor-d884b4a175

Conversation

@dependabot
Copy link
Copy Markdown
Contributor

@dependabot dependabot Bot commented on behalf of github Apr 27, 2026

Bumps the actions-patch-minor group with 1 update in the / directory: aquasecurity/trivy-action.

Updates aquasecurity/trivy-action from 0.35.0 to 0.36.0

Release notes

Sourced from aquasecurity/trivy-action's releases.

v0.36.0

What's Changed

New Contributors

Full Changelog: aquasecurity/trivy-action@v0.35.0...v0.36.0

Commits
  • ed142fd chore: update action version to v0.36.0 in examples (#563)
  • dea62cf chore(deps): Update trivy to v0.70.0 (#559)
  • 128d9a8 chore: use GitHub Actions as git commit author in bump-trivy workflow (#561)
  • 876cf04 Upgrade Trivy action version from 0.33.1 to 0.35.0 fixes #549 (#548)
  • dada784 Fix typo in GOOGLE_APPLICATION_CREDENTIALS env var name (#547)
  • 4a2deec fix: use portable shebang in entrypoint.sh (#545)
  • 1994662 chore(deps): bump the actions group with 5 updates (#558)
  • 6b36659 chore: add zizmor config (#557)
  • 316aa5a ci: add dependabot config (#556)
  • 264c9c5 test: use pinned digests for trivy-db, trivy-java-db and trivy-checks (#555)
  • Additional commits viewable in compare view

@dependabot @github
Copy link
Copy Markdown
Contributor Author

dependabot Bot commented on behalf of github Apr 27, 2026

Labels

The following labels could not be found: github-actions. Please create it before Dependabot can add it to a pull request.

Please fix the above issues or remove invalid values from dependabot.yml.

@codecov
Copy link
Copy Markdown

codecov Bot commented Apr 27, 2026

Codecov Report

✅ All modified and coverable lines are covered by tests.
✅ Project coverage is 100.00%. Comparing base (86b4a4f) to head (ca8f3b8).
⚠️ Report is 4 commits behind head on main.

Additional details and impacted files
@@            Coverage Diff            @@
##              main       #55   +/-   ##
=========================================
  Coverage   100.00%   100.00%           
=========================================
  Files           23        23           
  Lines         1258      1258           
=========================================
  Hits          1258      1258           
Flag Coverage Δ
pytest 100.00% <ø> (ø)

Flags with carried forward coverage won't be shown. Click here to find out more.

☔ View full report in Codecov by Sentry.
📢 Have feedback on the report? Share it here.

🚀 New features to boost your workflow:
  • ❄️ Test Analytics: Detect flaky tests, report on failures, and find test suite problems.

@dependabot dependabot Bot changed the title chore(deps)(deps): bump aquasecurity/trivy-action from 0.35.0 to 0.36.0 in the actions-patch-minor group chore(deps)(deps): bump aquasecurity/trivy-action from 0.35.0 to 0.36.0 in the actions-patch-minor group across 1 directory May 11, 2026
@dependabot dependabot Bot force-pushed the dependabot/github_actions/actions-patch-minor-d884b4a175 branch from 9cd74cb to be09bdb Compare May 11, 2026 05:17
@dependabot dependabot Bot force-pushed the dependabot/github_actions/actions-patch-minor-d884b4a175 branch 2 times, most recently from 9f91c3e to a2aa5d1 Compare May 25, 2026 05:54
@sonarqubecloud
Copy link
Copy Markdown

Bumps the actions-patch-minor group with 1 update in the / directory: [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action).


Updates `aquasecurity/trivy-action` from 0.35.0 to 0.36.0
- [Release notes](https://github.com/aquasecurity/trivy-action/releases)
- [Commits](aquasecurity/trivy-action@0.35.0...v0.36.0)

---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
  dependency-version: 0.36.0
  dependency-type: direct:production
  update-type: version-update:semver-minor
  dependency-group: actions-patch-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot Bot force-pushed the dependabot/github_actions/actions-patch-minor-d884b4a175 branch from a2aa5d1 to ca8f3b8 Compare June 1, 2026 10:58
@sonarqubecloud
Copy link
Copy Markdown

sonarqubecloud Bot commented Jun 1, 2026

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants