Skip to content

Trivy Vulnerability Scan #164

Trivy Vulnerability Scan

Trivy Vulnerability Scan #164

Triggered via schedule July 6, 2026 10:53
Status Failure
Total duration 2m 25s
Artifacts 6

trivy-scan.yml

on: schedule
Matrix: build
Synthetic CVE policy gate test
24s
Synthetic CVE policy gate test
Matrix: trivy-scan
Fit to window
Zoom out
Zoom in

Annotations

2 errors and 6 warnings
Synthetic CVE policy gate test
Process completed with exit code 1.
Trivy scan - backend
Process completed with exit code 1.
Build frontend image
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/upload-artifact@v4, docker/build-push-action@v6, docker/setup-buildx-action@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Build backend image
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/upload-artifact@v4, docker/build-push-action@v6, docker/setup-buildx-action@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Trivy scan - frontend
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/download-artifact@v4, actions/upload-artifact@v4, github/codeql-action/upload-sarif@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Trivy scan - frontend
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
Trivy scan - backend
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/checkout@v4, actions/download-artifact@v4, actions/upload-artifact@v4, github/codeql-action/upload-sarif@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Trivy scan - backend
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/

Artifacts

Produced during runtime
Name Size Digest
secuscan-backend-tar Expired
199 MB
sha256:b818900d235ef17349af8ecec450ce1c7b4b6fbc4421c21a92b1095c3a4fb6ff
secuscan-frontend-tar Expired
22.9 MB
sha256:8d522143ba38bd7eb5466fdaf93d02ecf65503e0c6ae030f5cd0cbee5702a9fb
trivy-report-backend Expired
159 KB
sha256:25cb3ba5b5d0ca2d8ac86f772d2a251fb9eb57e6b5b5f8c4bc8f800a7d00411a
trivy-report-frontend Expired
29.2 KB
sha256:7f28908eb809528e799ad10aaac02a16b44529c0ab8a2806345e1b4957a2f681
utksh1~SecuScan~ISP55P.dockerbuild
42.4 KB
sha256:d73f9ed171dcf61d1110dc3f7520bddb9858ef7643a604ef9dab10194302446b
utksh1~SecuScan~NY0JW2.dockerbuild
31.9 KB
sha256:14acee7f0671d4998e17fcb9a7f4758b8553cae5a3401add487a604cdd6dacfd