Skip to content

Commit 649bebb

Browse files
committed
Fix hash for trivy-action
1 parent 9b7c31b commit 649bebb

2 files changed

Lines changed: 3 additions & 3 deletions

File tree

.github/workflows/build-sign-scan.yaml

Lines changed: 1 addition & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -350,7 +350,7 @@ jobs:
350350
continue-on-error: true
351351

352352
- name: Run Trivy Vulnerability Scanner
353-
uses: aquasecurity/trivy-action@master
353+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 # v0.35.0
354354
if: ${{ inputs.trivy }}
355355
id: trivy
356356
with:

container-images/scan/trivy/action.yml

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -55,7 +55,7 @@ runs:
5555
# Get default Trivy results (table format)
5656
- name: Run Trivy vulnerability scanner
5757
id: scan
58-
uses: aquasecurity/trivy-action@master
58+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 # v.0.35.0
5959
continue-on-error: true
6060
with:
6161
image-ref: ${{ inputs.image }}
@@ -70,7 +70,7 @@ runs:
7070

7171
# Run Trivy again to get JSON results -- Trivy uses results cached from previous run
7272
- name: Run Trivy vulnerability scanner (JSON results)
73-
uses: aquasecurity/trivy-action@master
73+
uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 # v.0.35.0
7474
with:
7575
image-ref: ${{ inputs.image }}
7676
format: table

0 commit comments

Comments
 (0)