Skip to content

fix: update trivy-action from @master to @v0.35.0#19

Merged
andreinovik-regula merged 1 commit intomainfrom
54074-fix-trivy-vulnerability
Apr 7, 2026
Merged

fix: update trivy-action from @master to @v0.35.0#19
andreinovik-regula merged 1 commit intomainfrom
54074-fix-trivy-vulnerability

Conversation

@andreinovik-regula
Copy link
Copy Markdown
Contributor

Summary

Pin aquasecurity/trivy-action from the floating @master tag to the stable @v0.35.0 release.

Changes

  • .github/workflows/vulnerability-scanner.yml: aquasecurity/trivy-action@masteraquasecurity/trivy-action@v0.35.0

Motivation

Using @master means the action can change at any time without notice, potentially breaking CI or introducing unexpected behavior. Pinning to a specific version ensures reproducible and predictable builds.

Ticket

https://redmine.regulaforensics.com/issues/54074

@andreinovik-regula andreinovik-regula merged commit 5d014ee into main Apr 7, 2026
1 check passed
@andreinovik-regula andreinovik-regula deleted the 54074-fix-trivy-vulnerability branch April 7, 2026 10:45
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

2 participants