Skip to content

Commit 99adb82

Browse files
committed
Update Trivy
Currently does not seem to find CVE-2024-24790 in kubectl 🤔
1 parent c8a22e3 commit 99adb82

File tree

1 file changed

+5
-3
lines changed

1 file changed

+5
-3
lines changed

Jenkinsfile

Lines changed: 5 additions & 3 deletions
Original file line numberDiff line numberDiff line change
@@ -3,8 +3,8 @@
33
import com.cloudogu.ces.cesbuildlib.*
44

55
String getDockerRegistryBaseUrl() { 'ghcr.io' }
6-
76
String getDockerImageName() { 'cloudogu/gitops-playground' }
7+
String getTrivyVersion() { '0.55.0'}
88

99
properties([
1010
// Dont keep builds forever to preserve space
@@ -207,7 +207,8 @@ def scanForCriticalVulns(String imageName, String fileName){
207207
trivyConfig = [
208208
imageName : imageName,
209209
severity : ['CRITICAL'],
210-
additionalFlags: '--ignore-unfixed'
210+
additionalFlags: '--ignore-unfixed',
211+
trivyVersion: trivyVersion
211212
]
212213

213214
def vulns = findVulnerabilitiesWithTrivy(trivyConfig)
@@ -221,7 +222,8 @@ def scanForCriticalVulns(String imageName, String fileName){
221222

222223
def scanForAllVulns(String imageName, String fileName){
223224
trivyConfig = [
224-
imageName : imageName
225+
imageName : imageName,
226+
trivyVersion: trivyVersion
225227
]
226228

227229
def vulns = findVulnerabilitiesWithTrivy(trivyConfig)

0 commit comments

Comments
 (0)