diff --git a/.github/workflows/security-scan.yml b/.github/workflows/security-scan.yml index 92c483b..2b92398 100644 --- a/.github/workflows/security-scan.yml +++ b/.github/workflows/security-scan.yml @@ -39,7 +39,7 @@ jobs: run: docker build -f infra/docker/Dockerfile.agent -t bugarena-agent:ci . - name: Trivy scan agent image - uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 # 0.35.0 + uses: aquasecurity/trivy-action@ed142fd0673e97e23eac54620cfb913e5ce36c25 # v0.36.0 with: scan-type: image image-ref: bugarena-agent:ci @@ -66,7 +66,7 @@ jobs: run: docker build -f infra/docker/Dockerfile.capability-broker -t bugarena-capability-broker:ci . - name: Trivy scan capability broker image - uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 # 0.35.0 + uses: aquasecurity/trivy-action@ed142fd0673e97e23eac54620cfb913e5ce36c25 # v0.36.0 with: scan-type: image image-ref: bugarena-capability-broker:ci @@ -92,7 +92,7 @@ jobs: run: docker build -f infra/docker/Dockerfile.docker-daemon -t bugarena-docker-daemon:ci . - name: Trivy scan docker-daemon image - uses: aquasecurity/trivy-action@57a97c7e7821a5776cebc9bb87c984fa69cba8f1 # 0.35.0 + uses: aquasecurity/trivy-action@ed142fd0673e97e23eac54620cfb913e5ce36c25 # v0.36.0 with: scan-type: image image-ref: bugarena-docker-daemon:ci diff --git a/infra/docker/Dockerfile.agent b/infra/docker/Dockerfile.agent index 16cfa6f..d970920 100644 --- a/infra/docker/Dockerfile.agent +++ b/infra/docker/Dockerfile.agent @@ -1,4 +1,4 @@ -FROM ubuntu:noble@sha256:84e77dee7d1bc93fb029a45e3c6cb9d8aa4831ccfcc7103d36e876938d28895b +FROM ubuntu:noble@sha256:c4a8d5503dfb2a3eb8ab5f807da5bc69a85730fb49b5cfca2330194ebcc41c7b LABEL org.opencontainers.image.source="https://github.com/ErichHubert/bugarena" \ org.opencontainers.image.title="Bugarena Agent" \ diff --git a/infra/docker/Dockerfile.capability-broker b/infra/docker/Dockerfile.capability-broker index 15006d6..7b19be0 100644 --- a/infra/docker/Dockerfile.capability-broker +++ b/infra/docker/Dockerfile.capability-broker @@ -1,4 +1,4 @@ -FROM mcr.microsoft.com/dotnet/sdk:10.0-noble@sha256:127d7d4d601ae26b8e04c54efb37e9ce8766931bded0ee59fcd799afd21d6850 AS build +FROM mcr.microsoft.com/dotnet/sdk:10.0-noble@sha256:8a90a473da5205a16979de99d2fc20975e922c68304f5c79d564e666dc3982fc AS build WORKDIR /src @@ -12,7 +12,7 @@ RUN dotnet publish src/CapabilityBroker/CapabilityBroker.csproj \ -o /app/publish \ /p:UseAppHost=false -FROM mcr.microsoft.com/dotnet/aspnet:10.0-noble@sha256:c433886fdfe33c6427966a412328867b2be9a64f540a105d08943c2dc6fba39b AS final +FROM mcr.microsoft.com/dotnet/aspnet:10.0-noble@sha256:55e37c7795bfaf6b9cc5d77c155811d9569f529d86e20647704bc1d7dd9741d4 AS final LABEL org.opencontainers.image.source="https://github.com/ErichHubert/bugarena" \ org.opencontainers.image.title="Bugarena Capability Broker" \ diff --git a/infra/docker/Dockerfile.docker-daemon b/infra/docker/Dockerfile.docker-daemon index 007e36d..e16a770 100644 --- a/infra/docker/Dockerfile.docker-daemon +++ b/infra/docker/Dockerfile.docker-daemon @@ -1 +1 @@ -FROM docker:29.3.1-dind@sha256:4d90f1f6c400315c2dba96d3ec93c01e64198395cbba04f79d12adce4f737029 +FROM docker:29.4.1-dind@sha256:c77e5d7912f9b137cc67051fdc2991d8f5ae22c55ddf532bb836dcb693a04940 diff --git a/infra/docker/compose.released.yml b/infra/docker/compose.released.yml index e2e64c1..c3974e9 100644 --- a/infra/docker/compose.released.yml +++ b/infra/docker/compose.released.yml @@ -45,7 +45,7 @@ services: - agent-net docker-daemon: - image: docker:29.3.1-dind@sha256:4d90f1f6c400315c2dba96d3ec93c01e64198395cbba04f79d12adce4f737029 + image: docker:29.4.1-dind@sha256:c77e5d7912f9b137cc67051fdc2991d8f5ae22c55ddf532bb836dcb693a04940 privileged: true profiles: - testinfra diff --git a/tests/Bugarena.Platform.Tests/Bugarena.Platform.Tests.csproj b/tests/Bugarena.Platform.Tests/Bugarena.Platform.Tests.csproj index bab15c7..174dcfb 100644 --- a/tests/Bugarena.Platform.Tests/Bugarena.Platform.Tests.csproj +++ b/tests/Bugarena.Platform.Tests/Bugarena.Platform.Tests.csproj @@ -10,10 +10,10 @@ - + - + diff --git a/tests/CapabilityBroker.Tests/CapabilityBroker.Tests.csproj b/tests/CapabilityBroker.Tests/CapabilityBroker.Tests.csproj index ade310c..06f6924 100644 --- a/tests/CapabilityBroker.Tests/CapabilityBroker.Tests.csproj +++ b/tests/CapabilityBroker.Tests/CapabilityBroker.Tests.csproj @@ -11,9 +11,9 @@ - - - + + +