From 6fe0919eb5cd68446b4514874691fa85b7df0874 Mon Sep 17 00:00:00 2001 From: Maik Hummel <6891349+beevelop@users.noreply.github.com> Date: Tue, 17 Oct 2023 15:47:21 +0000 Subject: [PATCH] chore: update Trivy integration --- .github/workflows/docker.yml | 5 ++--- 1 file changed, 2 insertions(+), 3 deletions(-) diff --git a/.github/workflows/docker.yml b/.github/workflows/docker.yml index 3a8758f..9fddd6b 100644 --- a/.github/workflows/docker.yml +++ b/.github/workflows/docker.yml @@ -49,10 +49,9 @@ jobs: uses: aquasecurity/trivy-action@master with: image-ref: ${{ env.imageName }}:${{ steps.docker_meta.outputs.version }} - format: "template" - template: "@/contrib/sarif.tpl" + format: "sarif" output: "trivy-results.sarif" - name: Upload Trivy scan results to GitHub Security tab - uses: github/codeql-action/upload-sarif@v1 + uses: github/codeql-action/upload-sarif@v2 with: sarif_file: "trivy-results.sarif"