Commit 7d267ba
ci: update trivy-action to v0.35.0 after supply chain incident
The previous pin (v0.33.1) was affected by the March 2026 Trivy supply
chain attack and its install script can no longer download the binary.
Update to v0.35.0, the first clean release after remediation.
Co-Authored-By: Claude Opus 4.6 <noreply@anthropic.com>1 parent c8e8e04 commit 7d267ba
1 file changed
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
129 | 129 | | |
130 | 130 | | |
131 | 131 | | |
132 | | - | |
| 132 | + | |
133 | 133 | | |
134 | 134 | | |
135 | 135 | | |
| |||
0 commit comments