diff --git a/.github/workflows/security.yml b/.github/workflows/security.yml index 72a202a..44a17b4 100644 --- a/.github/workflows/security.yml +++ b/.github/workflows/security.yml @@ -69,7 +69,7 @@ jobs: - name: Run Trivy vulnerability scanner for Docker image if: steps.dockerfile_check.outputs.exists == 'true' && steps.image_check.outputs.exists == 'true' - uses: aquasecurity/trivy-action@0.34.1 + uses: aquasecurity/trivy-action@0.34.2 with: image-ref: '${{ github.actor }}/${{ github.event.repository.name }}:latest' format: 'template' @@ -80,7 +80,7 @@ jobs: - name: Run Trivy vulnerability scanner for Python package if: steps.dockerfile_check.outputs.exists == 'false' || steps.image_check.outputs.exists == 'false' - uses: aquasecurity/trivy-action@0.34.1 + uses: aquasecurity/trivy-action@0.34.2 with: scan-type: 'fs' scan-ref: '.'