Add GitHub Actions workflows for Anchore Grype, Trivy, and Dependency Review scans #20
3 new alerts including 3 medium severity security vulnerabilities
New alerts in code changed by this pull request
Security Alerts:
- 3 medium
See annotations below for details.
Annotations
Check warning on line 35 in .github/workflows/CIS-Anchore-Grype.yml
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium
Check warning on line 44 in .github/workflows/CIS-Anchore-Grype.yml
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium
Check warning on line 39 in .github/workflows/CIS-Trivy-AquaSecurity.yml
Code scanning / CodeQL
Unpinned tag for a non-immutable Action in workflow Medium