diff --git a/.github/workflows/ci-quarkus-build-publish-image.yml b/.github/workflows/ci-quarkus-build-publish-image.yml index dc4be81d..4ad7354c 100644 --- a/.github/workflows/ci-quarkus-build-publish-image.yml +++ b/.github/workflows/ci-quarkus-build-publish-image.yml @@ -136,7 +136,7 @@ jobs: --path . \ --buildpack docker://paketobuildpacks/quarkus \ --buildpack docker://paketobuildpacks/java-native-image \ - --builder paketobuildpacks/${{ inputs.image-pack }} \ + --builder paketobuildpacks/${{ inputs.image-pack }}:0.0.440 \ --volume "${HOME}/.m2:/home/cnb/.m2:rw" \ --env BP_JVM_VERSION="${{ inputs.java-version }}" \ --env BP_MAVEN_POM_FILE="./pom.xml" \ @@ -151,7 +151,7 @@ jobs: --path . \ --buildpack docker://paketobuildpacks/quarkus \ --buildpack docker://paketobuildpacks/java \ - --builder paketobuildpacks/${{ inputs.image-pack }} \ + --builder paketobuildpacks/${{ inputs.image-pack }}:0.0.440 \ --volume "${HOME}/.m2:/home/cnb/.m2:rw" \ --env BP_JVM_VERSION="${{ inputs.java-version }}" \ --env BP_MAVEN_POM_FILE="./pom.xml" \ diff --git a/.github/workflows/ci-quarkus-container-scan.yml b/.github/workflows/ci-quarkus-container-scan.yml index bc160ad8..a781ee5e 100644 --- a/.github/workflows/ci-quarkus-container-scan.yml +++ b/.github/workflows/ci-quarkus-container-scan.yml @@ -92,7 +92,7 @@ jobs: --path . \ --buildpack docker://paketobuildpacks/quarkus \ --buildpack docker://paketobuildpacks/java-native-image \ - --builder paketobuildpacks/${{ inputs.image-pack }} \ + --builder paketobuildpacks/${{ inputs.image-pack }}:0.0.440 \ --volume "${HOME}/.m2:/home/cnb/.m2:rw" \ --env BP_JVM_VERSION="${{ inputs.java-version }}" \ --env BP_MAVEN_POM_FILE="./pom.xml" \ @@ -107,7 +107,7 @@ jobs: --path . \ --buildpack docker://paketobuildpacks/quarkus \ --buildpack docker://paketobuildpacks/java \ - --builder paketobuildpacks/${{ inputs.image-pack }} \ + --builder paketobuildpacks/${{ inputs.image-pack }}:0.0.440 \ --volume "${HOME}/.m2:/home/cnb/.m2:rw" \ --env BP_JVM_VERSION="${{ inputs.java-version }}" \ --env BP_MAVEN_POM_FILE="./pom.xml" \ diff --git a/.github/workflows/ci-spring-boot-build-publish-image.yml b/.github/workflows/ci-spring-boot-build-publish-image.yml index 28e79923..3d820aed 100644 --- a/.github/workflows/ci-spring-boot-build-publish-image.yml +++ b/.github/workflows/ci-spring-boot-build-publish-image.yml @@ -202,7 +202,7 @@ jobs: mvn -B spring-boot:build-image \ --file ${{ inputs.application-path }}pom.xml \ -Dspring-boot.build-image.imageName=${{ steps.set-image-name.outputs.image-name }}:${{ steps.set-image-tag.outputs.image-tag }} \ - -Dspring-boot.build-image.builder=paketobuildpacks/${{ inputs.image-pack }} \ + -Dspring-boot.build-image.builder=paketobuildpacks/${{ inputs.image-pack }}:0.0.440 \ -Dspring-boot.build-image.createdDate=now - name: Set trivyignore env if file exists @@ -251,7 +251,7 @@ jobs: with: name: "sbom-${{ steps.sbom-name.outputs.sbom-artifact-id }}-${{ steps.set-image-tag.outputs.image-tag }}" path: "${{ github.workspace }}/sbom-${{ steps.sbom-name.outputs.sbom-artifact-id }}-${{ steps.set-image-tag.outputs.image-tag }}.json" - + # Login to GHCR if container-registry starts with ghcr.io - name: Login to GitHub Container Registry if: contains(inputs.container-registry, 'ghcr.io') diff --git a/.github/workflows/ci-spring-boot-container-scan.yml b/.github/workflows/ci-spring-boot-container-scan.yml index 0eb313dc..d2714466 100644 --- a/.github/workflows/ci-spring-boot-container-scan.yml +++ b/.github/workflows/ci-spring-boot-container-scan.yml @@ -108,7 +108,7 @@ jobs: - name: Build image with Maven (application-path, skips tests) if: inputs.module-name == '' - run: mvn -DskipTests -B spring-boot:build-image --file ${{ inputs.application-path }}pom.xml -Dspring-boot.build-image.imageName=${{ steps.set-image-name.outputs.image-name }}:${{ steps.set-image-tag.outputs.image-tag }} -Dspring-boot.build-image.builder=paketobuildpacks/${{ inputs.image-pack }} + run: mvn -DskipTests -B spring-boot:build-image --file ${{ inputs.application-path }}pom.xml -Dspring-boot.build-image.imageName=${{ steps.set-image-name.outputs.image-name }}:${{ steps.set-image-tag.outputs.image-tag }} -Dspring-boot.build-image.builder=paketobuildpacks/${{ inputs.image-pack }}:0.0.440 - name: Run Trivy vulnerability scanner uses: aquasecurity/trivy-action@b6643a29fecd7f34b3597bc6acb0a98b03d33ff8 # pin@v0.33.1