diff --git a/.github/workflows/trivy-scan.yml b/.github/workflows/trivy-scan.yml index dd8ece0..32349e2 100644 --- a/.github/workflows/trivy-scan.yml +++ b/.github/workflows/trivy-scan.yml @@ -21,11 +21,10 @@ jobs: uses: aquasecurity/trivy-action@0.20.0 with: scan-type: 'fs' - scan-ref: '.' ignore-unfixed: true format: 'sarif' output: 'trivy-results.sarif' - #severity: 'CRITICAL' + severity: 'UNKNOWN,LOW,MEDIUM,HIGH,CRITICAL' - name: Upload Trivy scan results to GitHub Security tab uses: github/codeql-action/upload-sarif@v3