diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index 83cb327..5eaa739 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -28,7 +28,7 @@ jobs: # 1. Console output for immediate feedback in CI logs - name: Run Trivy (Log Output) - uses: aquasecurity/trivy-action@0.28.0 + uses: aquasecurity/trivy-action@0.34.1 with: scan-type: "fs" scan-ref: "." @@ -39,7 +39,7 @@ jobs: # 2. SARIF output for GitHub Security tab integration - name: Run Trivy (SARIF Output) - uses: aquasecurity/trivy-action@0.28.0 + uses: aquasecurity/trivy-action@0.34.1 with: scan-type: "fs" scan-ref: "."