diff --git a/.github/workflows/build-prod.yml b/.github/workflows/build-prod.yml index b0044532..e9e800ad 100644 --- a/.github/workflows/build-prod.yml +++ b/.github/workflows/build-prod.yml @@ -157,7 +157,7 @@ jobs: gh release edit $TAG --title $TAG --notes "${{ steps.generate_notes.outputs.release_notes }}" - name: Generate SBOM (CycloneDX) - uses: aquasecurity/trivy-action@0.35.0 + uses: aquasecurity/trivy-action@v0.36.0 with: scan-type: 'fs' scan-ref: '.' diff --git a/.github/workflows/scans.yml b/.github/workflows/scans.yml index 9690f68e..58793c0a 100644 --- a/.github/workflows/scans.yml +++ b/.github/workflows/scans.yml @@ -19,7 +19,7 @@ jobs: - uses: actions/checkout@v4 - name: Generate Trivy GitHub report - uses: aquasecurity/trivy-action@0.35.0 + uses: aquasecurity/trivy-action@v0.36.0 with: scan-type: 'fs' scan-ref: '.' @@ -28,7 +28,7 @@ jobs: github-pat: ${{ secrets.GITHUB_TOKEN }} - name: Generate Trivy SARIF report - uses: aquasecurity/trivy-action@0.35.0 + uses: aquasecurity/trivy-action@v0.36.0 with: scan-type: 'fs' scan-ref: '.'