diff --git a/.github/workflows/trivy-analysis.yml b/.github/workflows/trivy-analysis.yml index 6a8bfd56be53..deff201f817d 100644 --- a/.github/workflows/trivy-analysis.yml +++ b/.github/workflows/trivy-analysis.yml @@ -29,6 +29,8 @@ jobs: output: trivy-results.sarif severity: MEDIUM,CRITICAL,HIGH ignore-unfixed: true + security-checks: vuln + timeout: 15m - name: Upload Trivy scan results to GitHub Security tab uses: github/codeql-action/upload-sarif@v2.2.4