diff --git a/.github/workflows/docker-python.yml b/.github/workflows/docker-python.yml index e7d8089..f4c9f6a 100644 --- a/.github/workflows/docker-python.yml +++ b/.github/workflows/docker-python.yml @@ -31,7 +31,7 @@ jobs: run: make - name: Trivy Scan - uses: aquasecurity/trivy-action@0.31.0 + uses: aquasecurity/trivy-action@0.32.0 with: image-ref: ghcr.io/cbdq-io/gitchangelog:latest scanners: vuln diff --git a/.github/workflows/periodic-trivy-scan.yml b/.github/workflows/periodic-trivy-scan.yml index b327834..a74b9fc 100644 --- a/.github/workflows/periodic-trivy-scan.yml +++ b/.github/workflows/periodic-trivy-scan.yml @@ -42,7 +42,7 @@ jobs: echo "tag=$semver_tag" >> $GITHUB_OUTPUT - name: Run Trivy scan and output SARIF - uses: aquasecurity/trivy-action@0.30.0 + uses: aquasecurity/trivy-action@0.32.0 continue-on-error: true with: image-ref: ghcr.io/${{ github.repository }}:${{ steps.get-tag.outputs.tag }}