From c87cf929768c2c155bca06db22737ea07659c1c3 Mon Sep 17 00:00:00 2001 From: Son Bui Date: Thu, 10 Aug 2023 18:48:19 +0800 Subject: [PATCH] feat: add action scan security govulncheck #9096 Signed-off-by: Son Bui --- .github/workflows/vulnerability-scans.yaml | 9 +++++++++ 1 file changed, 9 insertions(+) diff --git a/.github/workflows/vulnerability-scans.yaml b/.github/workflows/vulnerability-scans.yaml index af7d8bda1..de7d777a7 100644 --- a/.github/workflows/vulnerability-scans.yaml +++ b/.github/workflows/vulnerability-scans.yaml @@ -44,6 +44,15 @@ jobs: echo "${TAGS_JSON}" echo "TAGS=${TAGS_JSON}" >> $GITHUB_OUTPUT + govulncheck: + name: Run govulncheck + runs-on: ubuntu-latest + steps: + - name: Scan for vulnerabilities in go code + uses: golang/govulncheck-action@v1 + with: + check-latest: true + scan: runs-on: ubuntu-latest needs: version