diff --git a/.github/workflows/vulnerability_check.yml b/.github/workflows/vulnerability_check.yml index fccda764..dd43c28f 100644 --- a/.github/workflows/vulnerability_check.yml +++ b/.github/workflows/vulnerability_check.yml @@ -21,25 +21,19 @@ jobs: uses: docker/build-push-action@v4 with: context: ./ckan - load: true - push: false - file: ./ckan/Dockerfile + outputs: type=docker,dest=/tmp/ckan-image.tar tags: ckan-docker/ckan:test-valner-scan - name: Build and load CKAN xloader uses: docker/build-push-action@v4 with: context: ./ckan/ckanext-xloader - load: true - push: false - file: ./ckan/ckanext-xloader/Dockerfile - tags: ckan-docker/ckan:test-valner-scan + outputs: type=docker,dest=/tmp/ckan-xloader-image.tar + tags: ckan-docker/ckan-xloader:test-valner-scan - name: Scan for vulnerabilities for CKAN image uses: crazy-max/ghaction-container-scan@v3 with: - image: ckan-docker/ckan:test-valner-scan - dockerfile: ./ckan/Dockerfile + tarball: /tmp/ckan-image.tar - name: Scan for vulnerabilities for CKAN xloader image uses: crazy-max/ghaction-container-scan@v3 with: - image: ckan-docker/ckan-xloader:test-valner-scan - dockerfile: ./ckan/ckanext-xloader/Dockerfile + tarball: /tmp/ckan-xloader-image.tar