Skip to content

Commit d114100

Browse files
fix: update trivy-action to 0.35.0 to use latest stable versions
1 parent 14a1632 commit d114100

3 files changed

Lines changed: 14 additions & 14 deletions

File tree

.github/workflows/pyatlan-scheduled-scan.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ jobs:
4141
# ── Image scan ──
4242

4343
- name: Trivy image scan (JSON)
44-
uses: aquasecurity/trivy-action@0.34.2
44+
uses: aquasecurity/trivy-action@0.35.0
4545
with:
4646
image-ref: 'pyatlan:trivy-scan'
4747
scanners: 'vuln'
@@ -56,7 +56,7 @@ jobs:
5656
TRIVY_JAVA_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-java-db:1
5757

5858
- name: Trivy image scan (table)
59-
uses: aquasecurity/trivy-action@0.34.2
59+
uses: aquasecurity/trivy-action@0.35.0
6060
with:
6161
image-ref: 'pyatlan:trivy-scan'
6262
scanners: 'vuln'
@@ -73,7 +73,7 @@ jobs:
7373
# ── Dependency scan ──
7474

7575
- name: Trivy dependency scan (JSON)
76-
uses: aquasecurity/trivy-action@0.34.2
76+
uses: aquasecurity/trivy-action@0.35.0
7777
with:
7878
scan-type: fs
7979
input: 'uv.lock'
@@ -88,7 +88,7 @@ jobs:
8888
TRIVY_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-db:2
8989

9090
- name: Trivy dependency scan (table)
91-
uses: aquasecurity/trivy-action@0.34.2
91+
uses: aquasecurity/trivy-action@0.35.0
9292
with:
9393
scan-type: fs
9494
input: 'uv.lock'

.github/workflows/scheduled-trivy-scan.yml

Lines changed: 4 additions & 4 deletions
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ jobs:
4141
# ── Image scan ──
4242

4343
- name: Trivy image scan (JSON)
44-
uses: aquasecurity/trivy-action@0.34.2
44+
uses: aquasecurity/trivy-action@0.35.0
4545
with:
4646
image-ref: 'pyatlan:trivy-scan'
4747
scanners: 'vuln'
@@ -56,7 +56,7 @@ jobs:
5656
TRIVY_JAVA_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-java-db:1
5757

5858
- name: Trivy image scan (table)
59-
uses: aquasecurity/trivy-action@0.34.2
59+
uses: aquasecurity/trivy-action@0.35.0
6060
with:
6161
image-ref: 'pyatlan:trivy-scan'
6262
scanners: 'vuln'
@@ -73,7 +73,7 @@ jobs:
7373
# ── Dependency scan ──
7474

7575
- name: Trivy dependency scan (JSON)
76-
uses: aquasecurity/trivy-action@0.34.2
76+
uses: aquasecurity/trivy-action@0.35.0
7777
with:
7878
scan-type: fs
7979
input: 'uv.lock'
@@ -88,7 +88,7 @@ jobs:
8888
TRIVY_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-db:2
8989

9090
- name: Trivy dependency scan (table)
91-
uses: aquasecurity/trivy-action@0.34.2
91+
uses: aquasecurity/trivy-action@0.35.0
9292
with:
9393
scan-type: fs
9494
input: 'uv.lock'

.github/workflows/trivy.yml

Lines changed: 6 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -41,7 +41,7 @@ jobs:
4141
tags: pyatlan-trivy:latest
4242

4343
- name: Trivy image scan (table)
44-
uses: aquasecurity/trivy-action@0.34.2
44+
uses: aquasecurity/trivy-action@0.35.0
4545
with:
4646
image-ref: pyatlan-trivy:latest
4747
scanners: 'vuln'
@@ -67,7 +67,7 @@ jobs:
6767
fi
6868
6969
- name: Trivy image scan (SARIF)
70-
uses: aquasecurity/trivy-action@0.34.2
70+
uses: aquasecurity/trivy-action@0.35.0
7171
with:
7272
image-ref: pyatlan-trivy:latest
7373
scanners: 'vuln'
@@ -82,7 +82,7 @@ jobs:
8282
TRIVY_JAVA_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-java-db:1
8383

8484
- name: Trivy dependency scan (uv.lock, table)
85-
uses: aquasecurity/trivy-action@0.34.2
85+
uses: aquasecurity/trivy-action@0.35.0
8686
with:
8787
scan-type: fs
8888
scan-ref: uv.lock
@@ -108,7 +108,7 @@ jobs:
108108
fi
109109
110110
- name: Trivy dependency scan (uv.lock, SARIF)
111-
uses: aquasecurity/trivy-action@0.34.2
111+
uses: aquasecurity/trivy-action@0.35.0
112112
with:
113113
scan-type: fs
114114
scan-ref: uv.lock
@@ -163,7 +163,7 @@ jobs:
163163
} >> "$GITHUB_STEP_SUMMARY"
164164
165165
- name: Fail on High/Critical vulnerabilities (image)
166-
uses: aquasecurity/trivy-action@0.34.2
166+
uses: aquasecurity/trivy-action@0.35.0
167167
with:
168168
image-ref: pyatlan-trivy:latest
169169
scanners: 'vuln'
@@ -177,7 +177,7 @@ jobs:
177177
TRIVY_JAVA_DB_REPOSITORY: public.ecr.aws/aquasecurity/trivy-java-db:1
178178

179179
- name: Fail on High/Critical vulnerabilities (uv.lock)
180-
uses: aquasecurity/trivy-action@0.34.2
180+
uses: aquasecurity/trivy-action@0.35.0
181181
with:
182182
scan-type: fs
183183
scan-ref: uv.lock

0 commit comments

Comments
 (0)