We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
There was an error while loading. Please reload this page.
1 parent 0d93045 commit 3d66988Copy full SHA for 3d66988
.github/workflows/maven-service-build.yml
@@ -68,4 +68,9 @@ jobs:
68
with:
69
name: bom.json
70
- name: Run Trivy with SBOM
71
- run: trivy sbom --exit-code 1 --severity CRITICAL,HIGH ./bom.json
+ run: trivy sbom --severity CRITICAL,HIGH --format sarif -o trivy-report.sarif ./bom.json
72
+
73
+ - name: Upload SARIF report
74
+ uses: github/codeql-action/upload-sarif@v2
75
+ with:
76
+ sarif_file: trivy-report.sarif
0 commit comments