From e0094a1f2305022187d6cb79c6be35d55da7e8eb Mon Sep 17 00:00:00 2001 From: andyzhangx Date: Sat, 6 Jul 2024 12:06:57 +0000 Subject: [PATCH] test: fix trivy action failure test: ignore azcopy CVE-2024-24791 --- .github/workflows/trivy.yaml | 2 +- .trivyignore | 1 + 2 files changed, 2 insertions(+), 1 deletion(-) create mode 100644 .trivyignore diff --git a/.github/workflows/trivy.yaml b/.github/workflows/trivy.yaml index 9d513a1b1..948606c25 100644 --- a/.github/workflows/trivy.yaml +++ b/.github/workflows/trivy.yaml @@ -12,7 +12,7 @@ jobs: - name: Set up Go 1.x uses: actions/setup-go@v4 with: - go-version: 1.22.4 + go-version: 1.22.5 id: go - name: Checkout code diff --git a/.trivyignore b/.trivyignore new file mode 100644 index 000000000..aa862cb02 --- /dev/null +++ b/.trivyignore @@ -0,0 +1 @@ +CVE-2024-24791