From d1c1a98e476192d471d38916aabe89221750c9b4 Mon Sep 17 00:00:00 2001 From: cn Date: Thu, 8 Oct 2020 12:32:44 +0200 Subject: [PATCH] ci: use Github environment files - fixing vulnerability via https://docs.github.com/en/free-pro-team@latest/actions/reference/workflow-commands-for-github-actions#environment-files --- .github/workflows/vulnscan.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/vulnscan.yml b/.github/workflows/vulnscan.yml index 11b7f47..f1984ec 100644 --- a/.github/workflows/vulnscan.yml +++ b/.github/workflows/vulnscan.yml @@ -17,7 +17,7 @@ jobs: - name: Install Trivy run: | mkdir -p $GITHUB_WORKSPACE/bin - echo "::add-path::$GITHUB_WORKSPACE/bin" + echo "$GITHUB_WORKSPACE/bin" >> "$GITHUB_PATH" curl -sfL https://raw.githubusercontent.com/aquasecurity/trivy/master/contrib/install.sh | sh -s -- -b $GITHUB_WORKSPACE/bin - name: Download Trivy DB run: |