From 85ece4c76e78b042047b6145ebc2cbdeb2ab26c1 Mon Sep 17 00:00:00 2001 From: Thisaru Guruge Date: Tue, 2 Apr 2024 13:12:55 +0530 Subject: [PATCH 1/2] Add trivyignore file to ignore false positive --- .trivyignore | 2 ++ 1 file changed, 2 insertions(+) create mode 100644 .trivyignore diff --git a/.trivyignore b/.trivyignore new file mode 100644 index 0000000..30973f7 --- /dev/null +++ b/.trivyignore @@ -0,0 +1,2 @@ +# False Positive +CVE-2021-32050 From ed7ff5bcd5377f950ca52e61e6e57e31b2d96c98 Mon Sep 17 00:00:00 2001 From: Thisaru Guruge Date: Tue, 2 Apr 2024 13:13:42 +0530 Subject: [PATCH 2/2] Add workflow dispatch to Trivy workflow --- .github/workflows/trivy-scan.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/trivy-scan.yml b/.github/workflows/trivy-scan.yml index af3cbfa..29c5580 100644 --- a/.github/workflows/trivy-scan.yml +++ b/.github/workflows/trivy-scan.yml @@ -1,7 +1,7 @@ name: Trivy on: - workflow_call: + workflow_dispatch: jobs: ubuntu-build: