From 0e6f86533004d7ab6ab4865563683816d6a98506 Mon Sep 17 00:00:00 2001 From: Ian Nara Date: Wed, 13 Nov 2024 09:54:12 -0700 Subject: [PATCH] fix trivy scan pipeline bug --- .github/workflows/shared-validate-image.yaml | 2 +- actions/vulnerability_scan/action.yaml | 2 +- 2 files changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/shared-validate-image.yaml b/.github/workflows/shared-validate-image.yaml index 30db92fc..3eba0498 100644 --- a/.github/workflows/shared-validate-image.yaml +++ b/.github/workflows/shared-validate-image.yaml @@ -96,7 +96,7 @@ jobs: IMAGE_VERSION=${{ steps.package.outputs.jar_version }}-${{ steps.package.outputs.git_commit }} - name: Vulnerability Scan - uses: IABTechLab/uid2-shared-actions/actions/vulnerability_scan@ian-test-fix-trivy-issue + uses: IABTechLab/uid2-shared-actions/actions/vulnerability_scan@v3 with: scan_severity: HIGH,CRITICAL failure_severity: ${{ inputs.failure_severity }} diff --git a/actions/vulnerability_scan/action.yaml b/actions/vulnerability_scan/action.yaml index 3fe45a69..c6ff3161 100644 --- a/actions/vulnerability_scan/action.yaml +++ b/actions/vulnerability_scan/action.yaml @@ -124,4 +124,4 @@ runs: hide-progress: true env: TRIVY_SKIP_DB_UPDATE: true - TRIVY_SKIP_JAVA_DB_UPDATE: true \ No newline at end of file + TRIVY_SKIP_JAVA_DB_UPDATE: true