From 8c7e7819b957d27e78c9aeec6347510fb12f34a4 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Fri, 28 May 2021 22:39:07 +0530 Subject: [PATCH] chore(deps): bump aquasecurity/trivy-action from 0.0.17 to 0.0.18 (#3500) Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action) from 0.0.17 to 0.0.18. - [Release notes](https://github.com/aquasecurity/trivy-action/releases) - [Commits](https://github.com/aquasecurity/trivy-action/compare/dba83feec810c70bacbc4bead308ae1e466c572b...ac8de07fd168680dd0331bef43681c0e150e9ad1) Signed-off-by: dependabot[bot] Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> --- .github/workflows/ci.yaml | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.github/workflows/ci.yaml b/.github/workflows/ci.yaml index f6c3f008e..ddbb5ff3e 100644 --- a/.github/workflows/ci.yaml +++ b/.github/workflows/ci.yaml @@ -432,7 +432,7 @@ jobs: - name: Run Trivy vulnerability scanner in image mode # Commit SHA for v0.0.17 - uses: aquasecurity/trivy-action@dba83feec810c70bacbc4bead308ae1e466c572b + uses: aquasecurity/trivy-action@ac8de07fd168680dd0331bef43681c0e150e9ad1 with: input: "./release-images/code-server-amd64-*.tar" scan-type: "image" @@ -460,7 +460,7 @@ jobs: uses: actions/checkout@v2 - name: Run Trivy vulnerability scanner in repo mode #Commit SHA for v0.0.17 - uses: aquasecurity/trivy-action@dba83feec810c70bacbc4bead308ae1e466c572b + uses: aquasecurity/trivy-action@ac8de07fd168680dd0331bef43681c0e150e9ad1 with: scan-type: "fs" scan-ref: "."