diff --git a/.github/workflows/check-docker.yml b/.github/workflows/check-docker.yml index 86bd700727..af146c3762 100644 --- a/.github/workflows/check-docker.yml +++ b/.github/workflows/check-docker.yml @@ -67,7 +67,7 @@ jobs: - name: Build image run: yarn workspace ${{ matrix.package }} build-dry:docker ${{ github.sha }} - name: Scan image for security issues - uses: aquasecurity/trivy-action@0.24.0 + uses: aquasecurity/trivy-action@0.25.0 with: # TODO: we should probably also setup misconfiguration scanning # See https://github.com/aquasecurity/trivy-action#using-trivy-to-scan-infrastucture-as-code