diff --git a/.github/workflows/publish.yml b/.github/workflows/publish.yml index d49bb2e..093bb14 100644 --- a/.github/workflows/publish.yml +++ b/.github/workflows/publish.yml @@ -64,6 +64,8 @@ jobs: scan-ref: 'ghcr.io/blinklabs-io/openvpn:${{ env.FIRST_TAG }}' format: 'sarif' output: 'trivy-results-${{ env.FIRST_TAG }}.sarif' + ignore-unfixed: true + severity: 'HIGH,CRITICAL' - name: Upload Trivy scan results to GitHub Security tab uses: github/codeql-action/upload-sarif@fdbfb4d2750291e159f0156def62b853c2798ca2 # v4.31.5 if: always()