Skip to content

Conversation

@priteau
Copy link
Member

@priteau priteau commented Jan 5, 2026

Release notes: aquasecurity/trivy#9868

@priteau priteau self-assigned this Jan 5, 2026
@priteau priteau requested a review from a team as a code owner January 5, 2026 13:12
Copy link
Contributor

@gemini-code-assist gemini-code-assist bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Code Review

This pull request updates the Trivy version to v0.68.2 in the scan-images.sh script. The change itself is correct. However, I've added a comment with a suggestion to improve the maintainability of the script by defining the Trivy version as a variable. This would make future updates easier and less prone to error.

@Alex-Welsh
Copy link
Member

@priteau could you run an image build & link it here?

@priteau
Copy link
Member Author

priteau commented Jan 5, 2026

Already done: https://github.com/stackhpc/stackhpc-kayobe-config/actions/runs/20716579886

Scanning is failing, as expected: there is a critical vulnerability in Prometheus images that @elelaysh has noticed already.

@Alex-Welsh Alex-Welsh merged commit acb72d7 into stackhpc/2025.1 Jan 5, 2026
25 of 29 checks passed
@Alex-Welsh Alex-Welsh deleted the bump-trivy branch January 5, 2026 13:57
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants