Skip to content

Commit d7f0e66

Browse files
committed
Fix allowed vulnerability list not reset between images
1 parent 7f88357 commit d7f0e66

1 file changed

Lines changed: 1 addition & 1 deletion

File tree

tools/scan-images.sh

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -63,7 +63,7 @@ generate_trivy_ignore() {
6363
local image_vulnerabilities
6464
image_vulnerabilities=$(yq ."$imagename"'_allowed_vulnerabilities[]' src/kayobe-config/etc/kayobe/trivy/allowed-vulnerabilities.yml 2> /dev/null)
6565

66-
touch .trivyignore
66+
truncate -s 0 .trivyignore # ensure we start from a clean slate
6767
for vulnerability in $global_vulnerabilities; do
6868
echo "$vulnerability" >> .trivyignore
6969
done

0 commit comments

Comments
 (0)