diff --git a/.github/workflows/artifacts.yaml b/.github/workflows/artifacts.yaml index 8d298853..ec27801a 100644 --- a/.github/workflows/artifacts.yaml +++ b/.github/workflows/artifacts.yaml @@ -135,7 +135,7 @@ jobs: path: docker.tar - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@b43daad0c3c96202fc5800b511dfae8e6ecce864 # 0.11.0 + uses: aquasecurity/trivy-action@41f05d9ecffa2ed3f1580af306000f734b733e54 # 0.11.2 with: input: image format: sarif @@ -232,7 +232,7 @@ jobs: if: inputs.publish && inputs.release - name: Run Trivy vulnerability scanner - uses: aquasecurity/trivy-action@b43daad0c3c96202fc5800b511dfae8e6ecce864 # 0.11.0 + uses: aquasecurity/trivy-action@41f05d9ecffa2ed3f1580af306000f734b733e54 # 0.11.2 with: scan-type: config scan-ref: charts/${{ steps.chart-name.outputs.value }}