From 87b89846b43c444f7acf0809385f898f07bf6599 Mon Sep 17 00:00:00 2001 From: Hendrik Schmidt Date: Wed, 6 Nov 2024 10:46:23 +0100 Subject: [PATCH] Update scan.yml with limit-severities-for-sarif: true --- .github/workflows/scan.yml | 1 + 1 file changed, 1 insertion(+) diff --git a/.github/workflows/scan.yml b/.github/workflows/scan.yml index f6494d7..f14220c 100644 --- a/.github/workflows/scan.yml +++ b/.github/workflows/scan.yml @@ -30,6 +30,7 @@ jobs: format: "sarif" output: "trivy-results.sarif" severity: "CRITICAL,HIGH" + limit-severities-for-sarif: true exit-code: "1" # Fail the build! - name: Upload Trivy scan results to GitHub Security tab uses: github/codeql-action/upload-sarif@65c74964a9ed8c44ed9f19d4bbc5757a6a8e9ab9 # == v2