Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: Updated trivy workflow #177

Closed
wants to merge 0 commits into from
Closed

Conversation

RoKrish14
Copy link
Contributor

@RoKrish14 RoKrish14 commented Jun 14, 2024

Description

Updates:

  1. retrieves latest release of Trivy versions
  2. resolves failure of workflows (except High and Critical findings)
    exit-code: "1"
    limit-severities-for-sarif: true

Pre-review checks

Please ensure to do as many of the following checks as possible, before asking for committer review:

@adkumar1
Copy link
Contributor

Hi @RoKrish14 : Dependencies file is not having the correct versions. Please regenerate dependencies file.

@RoKrish14
Copy link
Contributor Author

Yes, and there is a related issue created for the same reason. You need to update the workflow after which the issue can be solved here.
Related issue: #178

@adkumar1
Copy link
Contributor

adkumar1 commented Jun 18, 2024

@RoKrish14 : I don't think any change is required to the workflow. It is working perfectly fine.
What new changes are you making with this PR for DEPENDENCIES file ? I think you are using some outdated DEPENDENCIES file, due to which its throwing error. Use the current one which is there in (eclipse-tractusx:main) branch.

@amoldashwant : FYI

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants