Przeglądaj źródła

build(deps): bump aquasecurity/trivy-action

Bumps the github_actions group with 1 update in the /.github/workflows directory: [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action).


Updates `aquasecurity/trivy-action` from 0.33.1 to 0.34.0
- [Release notes](https://github.com/aquasecurity/trivy-action/releases)
- [Commits](https://github.com/aquasecurity/trivy-action/compare/0.33.1...0.34.0)

---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
  dependency-version: 0.34.0
  dependency-type: direct:production
  dependency-group: github_actions
...

Signed-off-by: dependabot[bot] <support@github.com>
dependabot[bot] 3 miesięcy temu
rodzic
commit
971aa960a8
1 zmienionych plików z 2 dodań i 2 usunięć
  1. 2 2
      .github/workflows/security.yml

+ 2 - 2
.github/workflows/security.yml

@@ -75,7 +75,7 @@ jobs:
         run: docker build -t bambuddy:security-scan .
         run: docker build -t bambuddy:security-scan .
 
 
       - name: Run Trivy vulnerability scanner
       - name: Run Trivy vulnerability scanner
-        uses: aquasecurity/trivy-action@0.33.1
+        uses: aquasecurity/trivy-action@0.34.0
         with:
         with:
           image-ref: 'bambuddy:security-scan'
           image-ref: 'bambuddy:security-scan'
           format: 'sarif'
           format: 'sarif'
@@ -91,7 +91,7 @@ jobs:
           category: trivy
           category: trivy
 
 
       - name: Run Trivy for Dockerfile/IaC
       - name: Run Trivy for Dockerfile/IaC
-        uses: aquasecurity/trivy-action@0.33.1
+        uses: aquasecurity/trivy-action@0.34.0
         with:
         with:
           scan-type: 'config'
           scan-type: 'config'
           scan-ref: '.'
           scan-ref: '.'