Skip to content

Merge pull request #284 from johankok/add-additional-labels-to-ingress #138

Merge pull request #284 from johankok/add-additional-labels-to-ingress

Merge pull request #284 from johankok/add-additional-labels-to-ingress #138

Workflow file for this run

name: cve-scan
on:
push:
branches:
- 'master'
permissions:
contents: read
jobs:
trivy:
runs-on: ubuntu-latest
steps:
- name: Checkout
uses: actions/checkout@v3
- name: Build image
id: build
run: |
IMAGE=test/podinfo:${GITHUB_SHA}
docker build -t ${IMAGE} .
echo "::set-output name=image::$IMAGE"
- name: Run Trivy vulnerability scanner
uses: aquasecurity/trivy-action@master
with:
image-ref: ${{ steps.build.outputs.image }}
format: table
exit-code: "1"
ignore-unfixed: true
vuln-type: os,library
severity: CRITICAL,HIGH