We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
2 parents 7be7bf0 + 8448f0b commit 6f74dc8Copy full SHA for 6f74dc8
1 file changed
.github/workflows/publish.yml
@@ -158,7 +158,8 @@ jobs:
158
- uses: actions/checkout@v4
159
160
- name: Scan ${{ matrix.image }} for vulnerabilities
161
- uses: aquasecurity/trivy-action@0.24.0
+ # pinned to commit for release https://github.com/aquasecurity/trivy-action/releases/tag/v0.24.0
162
+ uses: aquasecurity/trivy-action@6e7b7d1fd3e4fef0c5fa8cce1229c54b2c9bd0d8
163
env:
164
TRIVY_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-db
165
TRIVY_JAVA_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-java-db
0 commit comments