fix: explicitly scan all severities in cve-edge-post trivy scan

This commit is contained in:
ychangkim
2026-07-21 17:36:39 +09:00
parent bec87f12bb
commit 392766442b
+1
View File
@@ -117,6 +117,7 @@ jobs:
safe=$(printf "%s" "$img" | tr "/:@" "___")
echo ">> 스캔: $img"
trivy image --quiet --cache-backend memory --skip-db-update \
--severity LOW,MEDIUM,HIGH,CRITICAL \
--format json --timeout 15m --output "$reports/$safe.json" "$img" \
|| echo "::warning::스캔 실패: $img"
' _ {} "$REPORTS_DIR" < "$OUT_DIR/images_scan.txt"