diff --git a/.github/workflows/container-security-scan.yml b/.github/workflows/container-security-scan.yml index 7c8fc8a..321981a 100644 --- a/.github/workflows/container-security-scan.yml +++ b/.github/workflows/container-security-scan.yml @@ -70,7 +70,7 @@ jobs: docker image inspect "$IMAGE_REF" >/dev/null 2>&1 - name: Run Trivy vulnerability scan (image) - uses: aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # v0.24.0 + uses: aquasecurity/trivy-action@e368e328979b113139d6f9068e03accaed98a518 # v0.24.0 with: image-ref: ${{ matrix.repo }}:${{ matrix.version }} format: sarif