From b0ffc6746464a39e9ee74de0601351d80ad8800e Mon Sep 17 00:00:00 2001 From: Juan Calderon-Perez <835733+gaby@users.noreply.github.com> Date: Fri, 9 Jun 2023 00:20:14 -0400 Subject: [PATCH 1/3] Migrate to golang official govulncheck action --- .github/workflows/vulncheck.yml | 21 +++++++-------------- 1 file changed, 7 insertions(+), 14 deletions(-) diff --git a/.github/workflows/vulncheck.yml b/.github/workflows/vulncheck.yml index c7251288927..42186c61f2b 100644 --- a/.github/workflows/vulncheck.yml +++ b/.github/workflows/vulncheck.yml @@ -15,20 +15,13 @@ on: name: Vulnerability Check jobs: Security: + strategy: + matrix: + go-version: [1.17.x, 1.18.x, 1.19.x, 1.20.x] runs-on: ubuntu-latest steps: - - name: Install Go - uses: actions/setup-go@v4 + - name: Run govulncheck + uses: golang/govulncheck-action@v0.1.0 with: - go-version: 1.20.x - check-latest: true - - name: Fetch Repository - uses: actions/checkout@v3 - - name: Install Govulncheck - run: | - export GO111MODULE=on - export PATH=${PATH}:`go env GOPATH`/bin - go install golang.org/x/vuln/cmd/govulncheck@latest - - name: Run Govulncheck - run: "`go env GOPATH`/bin/govulncheck ./..." - + go-version-input: ${{ matrix.go-version }} + go-package: ./... From ac62852bfd61751168a6a84e26b37cc76a8cb1da Mon Sep 17 00:00:00 2001 From: Juan Calderon-Perez <835733+gaby@users.noreply.github.com> Date: Fri, 9 Jun 2023 00:24:47 -0400 Subject: [PATCH 2/3] Remove unsupported go version from govulncheck --- .github/workflows/vulncheck.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/vulncheck.yml b/.github/workflows/vulncheck.yml index 42186c61f2b..8023657e98f 100644 --- a/.github/workflows/vulncheck.yml +++ b/.github/workflows/vulncheck.yml @@ -17,7 +17,7 @@ jobs: Security: strategy: matrix: - go-version: [1.17.x, 1.18.x, 1.19.x, 1.20.x] + go-version: [1.18.x, 1.19.x, 1.20.x] runs-on: ubuntu-latest steps: - name: Run govulncheck From 9234bc22211d4bb085dd4ff856b5bfb1a88f6d8c Mon Sep 17 00:00:00 2001 From: Juan Calderon-Perez <835733+gaby@users.noreply.github.com> Date: Fri, 9 Jun 2023 00:32:46 -0400 Subject: [PATCH 3/3] Update vulncheck.yml --- .github/workflows/vulncheck.yml | 6 ------ 1 file changed, 6 deletions(-) diff --git a/.github/workflows/vulncheck.yml b/.github/workflows/vulncheck.yml index 8023657e98f..29e7682adc3 100644 --- a/.github/workflows/vulncheck.yml +++ b/.github/workflows/vulncheck.yml @@ -15,13 +15,7 @@ on: name: Vulnerability Check jobs: Security: - strategy: - matrix: - go-version: [1.18.x, 1.19.x, 1.20.x] runs-on: ubuntu-latest steps: - name: Run govulncheck uses: golang/govulncheck-action@v0.1.0 - with: - go-version-input: ${{ matrix.go-version }} - go-package: ./...