chore(workflows/docker.yaml): add debug suffix for trivy (#1017)
Signed-off-by: Gaius <gaius.qi@gmail.com>
This commit is contained in:
parent
38b83967e9
commit
a3dfaa6711
|
|
@ -183,7 +183,7 @@ jobs:
|
|||
- name: Run Trivy vulnerability scanner in tarball mode
|
||||
uses: aquasecurity/trivy-action@18f2510ee396bbf400402947b394f2dd8c87dbb0
|
||||
with:
|
||||
image-ref: dragonflyoss/client:${{ steps.get_version.outputs.VERSION }}
|
||||
image-ref: dragonflyoss/client:${{ steps.get_version.outputs.VERSION }}-debug
|
||||
severity: 'CRITICAL,HIGH'
|
||||
format: 'sarif'
|
||||
output: 'trivy-results.sarif'
|
||||
|
|
|
|||
Loading…
Reference in New Issue