Skip to content

Version Bump for Trivy#16

Merged
damienjburks merged 3 commits intodevsecblueprint:mainfrom
Audrey-me:trivy-fix
Apr 14, 2026
Merged

Version Bump for Trivy#16
damienjburks merged 3 commits intodevsecblueprint:mainfrom
Audrey-me:trivy-fix

Conversation

@Audrey-me
Copy link
Copy Markdown
Contributor

Updated Trivy action from v0.31.0 to v0.35.0 and verified the workflow.

@Audrey-me
Copy link
Copy Markdown
Contributor Author

Audrey-me commented Apr 14, 2026

Updated Trivy action to a valid version and pinned it to a full commit SHA to satisfy security best practices enforced by SonarCloud.
picked up the commit hash from here : aquasecurity/trivy-action@57a97c7

Screenshot 2026-04-14 at 5 40 59 AM

@sonarqubecloud
Copy link
Copy Markdown

@Audrey-me
Copy link
Copy Markdown
Contributor Author

updated OWASP ZAP scan by pinning it to a full commit SHA to satisfy security best practices enforced by SonarCloud.

commit SHA was gotten from here: zaproxy/action-api-scan@77dfa9a

Screenshot 2026-04-14 at 5 41 32 AM

@damienjburks damienjburks self-requested a review April 14, 2026 14:53
@damienjburks damienjburks merged commit 07a99ad into devsecblueprint:main Apr 14, 2026
1 check passed
@damienjburks
Copy link
Copy Markdown
Contributor

@Audrey-me thank you so much for the contribution!

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants