aboutsummaryrefslogtreecommitdiff
path: root/.github
diff options
context:
space:
mode:
authorTill Faelligen <2353100+S7evinK@users.noreply.github.com>2022-11-03 08:20:51 +0100
committerTill Faelligen <2353100+S7evinK@users.noreply.github.com>2022-11-03 08:20:51 +0100
commitf5b11e30a4ccb86e0ee762a801930d8ded85c4d2 (patch)
treec43b91ff0e2f9c570fd4aa2401026f8ead344974 /.github
parent4afadebd997330e054df126008c796fa4eb976ca (diff)
Hopefully fix GHA sarif upload
Diffstat (limited to '.github')
-rw-r--r--.github/workflows/docker.yml6
1 files changed, 4 insertions, 2 deletions
diff --git a/.github/workflows/docker.yml b/.github/workflows/docker.yml
index b80afedf..789f6c44 100644
--- a/.github/workflows/docker.yml
+++ b/.github/workflows/docker.yml
@@ -24,6 +24,7 @@ jobs:
permissions:
contents: read
packages: write
+ security-events: write # To upload Trivy sarif files
steps:
- name: Checkout
uses: actions/checkout@v3
@@ -75,7 +76,7 @@ jobs:
output: "trivy-results.sarif"
- name: Upload Trivy scan results to GitHub Security tab
- uses: github/codeql-action/upload-sarif@v1
+ uses: github/codeql-action/upload-sarif@v2
with:
sarif_file: "trivy-results.sarif"
@@ -103,6 +104,7 @@ jobs:
permissions:
contents: read
packages: write
+ security-events: write # To upload Trivy sarif files
steps:
- name: Checkout
uses: actions/checkout@v3
@@ -154,7 +156,7 @@ jobs:
output: "trivy-results.sarif"
- name: Upload Trivy scan results to GitHub Security tab
- uses: github/codeql-action/upload-sarif@v1
+ uses: github/codeql-action/upload-sarif@v2
with:
sarif_file: "trivy-results.sarif"