From a20407ef42f21db862e35f54e985db0be0d04d3a Mon Sep 17 00:00:00 2001 From: hangpersonal Date: Sat, 18 Oct 2025 17:05:28 -0700 Subject: [PATCH] Add .gitea/workflows/*.yaml --- .gitea/workflows/010_ci_docker_image.yaml | 18 +++++++----------- 1 file changed, 7 insertions(+), 11 deletions(-) diff --git a/.gitea/workflows/010_ci_docker_image.yaml b/.gitea/workflows/010_ci_docker_image.yaml index 1e4a96a..1a3e56c 100644 --- a/.gitea/workflows/010_ci_docker_image.yaml +++ b/.gitea/workflows/010_ci_docker_image.yaml @@ -103,18 +103,14 @@ jobs: with: name: image path: /tmp - - name: Scan saved image tar with Trivy via Docker + - name: Load image + run: docker load --input /tmp/image.tar + - name: Scan loaded image run: | - pwd - ls -la /tmp || true - docker run --rm \ - -v /tmp:/tmp \ - aquasec/trivy:0.52.2 image \ - --input /tmp/image.tar \ - --format json \ - --output /tmp/trivy-results.json \ - --severity CRITICAL,HIGH \ - --ignore-unfixed + IMAGE="${{ inputs.image-name }}:${{ inputs.image-tag }}" + docker run --rm aquasec/trivy:0.52.2 image \ + --format json --severity CRITICAL,HIGH --ignore-unfixed \ + "$IMAGE" > /tmp/trivy-results.json - name: Upload results uses: actions/upload-artifact@v3 with: