Skip to content

Update actions/checkout action to v4 #189

Update actions/checkout action to v4

Update actions/checkout action to v4 #189

name: CVE Scanning for Docker
on: [push, pull_request]
jobs:
scan-docker:
runs-on: ubuntu-latest
steps:
- uses: actions/checkout@3df4ab11eba7bda6032a0b82a6bb43b11571feac # v4
- uses: docker-practice/actions-setup-docker@1.0.11
- name: Build
run: docker build -f Dockerfile -t user/app:latest .
working-directory: docker
- name: Scan for vulnerabilities
uses: crazy-max/ghaction-container-scan@v2
with:
image: user/app:latest
env:
TRIVY_TIMEOUT: 20m