diff --git a/.github/workflows/trivy-security-scan.yml b/.github/workflows/trivy-security-scan.yml index fcb51baefd..12be79ccb4 100644 --- a/.github/workflows/trivy-security-scan.yml +++ b/.github/workflows/trivy-security-scan.yml @@ -48,7 +48,7 @@ jobs: if: github.event.client_payload.image != '' uses: aquasecurity/trivy-action@915b19bbe73b92a6cf82a1bc12b087c9a19a5fe2 # v0.28.0 with: - version: 'v0.57.2' + version: 'latest' image-ref: ${{ github.event.client_payload.image }} cache: 'true' format: "sarif" @@ -59,8 +59,6 @@ jobs: severity: "CRITICAL,HIGH" env: TRIVY_CACHE_DIR: .cache/trivy - TRIVY_SKIP_DB_UPDATE: true - TRIVY_SKIP_JAVA_DB_UPDATE: true # Upload image scan results - name: Upload Trivy image scan results @@ -73,7 +71,7 @@ jobs: - name: Run Trivy filesystem scan uses: aquasecurity/trivy-action@915b19bbe73b92a6cf82a1bc12b087c9a19a5fe2 # v0.28.0 with: - version: 'v0.57.2' + version: 'latest' scan-type: 'fs' cache: 'true' format: 'sarif' @@ -82,8 +80,6 @@ jobs: ignore-unfixed: true env: TRIVY_CACHE_DIR: .cache/trivy - TRIVY_SKIP_DB_UPDATE: true - TRIVY_SKIP_JAVA_DB_UPDATE: true # Upload filesystem scan results - name: Upload Trivy filesystem scan results