@@ -102,7 +102,7 @@ jobs:
102102
103103 - name : Build and push image
104104 id : build
105- uses : docker/build-push-action@14487ce63c7a62a4a324b0bfb37086795e31c6c1 # v6.16 .0
105+ uses : docker/build-push-action@263435318d21b8e681c14492fe198d362a7d2c83 # v6.18 .0
106106 with :
107107 context : .
108108 platforms : linux/amd64,linux/arm64
@@ -150,7 +150,7 @@ jobs:
150150 tar -xf image.tar -C image
151151
152152 - name : Run Trivy vulnerability scanner
153- uses : aquasecurity/trivy-action@6c175e9c4083a92bbca2f9724c8a5e33bc2d97a5 # 0.30 .0
153+ uses : aquasecurity/trivy-action@76071ef0d7ec797419534a183b498b4d6366cf37 # 0.31 .0
154154 env :
155155 TRIVY_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-db:2
156156 TRIVY_JAVA_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-java-db:1
@@ -167,7 +167,7 @@ jobs:
167167 retention-days : 5
168168
169169 - name : Upload Trivy scan results to GitHub Security tab
170- uses : github/codeql-action/upload-sarif@28deaeda66b76a05916b6923827895f2b14ab387 # v3.28.16
170+ uses : github/codeql-action/upload-sarif@fca7ace96b7d713c7035871441bd52efbe39e27e # v3.28.19
171171 with :
172172 sarif_file : trivy-results.sarif
173173
@@ -268,7 +268,7 @@ jobs:
268268 --certificate-oidc-issuer "https://token.actions.githubusercontent.com" | jq
269269
270270 - name : Run Trivy vulnerability scanner
271- uses : aquasecurity/trivy-action@6c175e9c4083a92bbca2f9724c8a5e33bc2d97a5 # 0.30 .0
271+ uses : aquasecurity/trivy-action@76071ef0d7ec797419534a183b498b4d6366cf37 # 0.31 .0
272272 env :
273273 TRIVY_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-db:2
274274 TRIVY_JAVA_DB_REPOSITORY : public.ecr.aws/aquasecurity/trivy-java-db:1
@@ -286,6 +286,6 @@ jobs:
286286 retention-days : 5
287287
288288 - name : Upload Trivy scan results to GitHub Security tab
289- uses : github/codeql-action/upload-sarif@28deaeda66b76a05916b6923827895f2b14ab387 # v3.28.16
289+ uses : github/codeql-action/upload-sarif@fca7ace96b7d713c7035871441bd52efbe39e27e # v3.28.19
290290 with :
291291 sarif_file : trivy-results.sarif
0 commit comments