diff --git a/.github/workflows/ci.yaml b/.github/workflows/ci.yaml index 39a9136b1d4d..bf772c8de398 100644 --- a/.github/workflows/ci.yaml +++ b/.github/workflows/ci.yaml @@ -447,7 +447,7 @@ jobs: - name: Run Trivy vulnerability scanner in image mode # Commit SHA for v0.0.14 - uses: aquasecurity/trivy-action@341f810bd602419f966a081da3f4debedc3e5c8e + uses: aquasecurity/trivy-action@9789b6ae3b29487541292242e416cd89e4e54874 with: input: "./release-images/code-server-amd64-*.tar" scan-type: "image" @@ -475,7 +475,7 @@ jobs: uses: actions/checkout@v2 - name: Run Trivy vulnerability scanner in repo mode #Commit SHA for v0.0.14 - uses: aquasecurity/trivy-action@341f810bd602419f966a081da3f4debedc3e5c8e + uses: aquasecurity/trivy-action@9789b6ae3b29487541292242e416cd89e4e54874 with: scan-type: "fs" scan-ref: "."