diff --git a/.github/workflows/cve-scan-and-patching.yml b/.github/workflows/cve-scan-and-patching.yml index 594b235..760eb75 100644 --- a/.github/workflows/cve-scan-and-patching.yml +++ b/.github/workflows/cve-scan-and-patching.yml @@ -125,14 +125,17 @@ jobs: id: patching run: | IMAGE_TO_PATCH=${{ matrix.image_to_patch }} + IMAGE_TO_PATCH_NORMALIZED=${IMAGE_TO_PATCH//[:\/]/_} cd CVEs mkdir -p reports make trivy-download-db - DOCKER_CONFIG="${DOCKER_CONFIG}" make patch IMAGE_TO_PATCH="${IMAGE_TO_PATCH}" PATCH_REPORT_OUTPUT_FILE="reports/${IMAGE_TO_PATCH//[:\/]/_}.patched.md" + DOCKER_CONFIG="${DOCKER_CONFIG}" make patch IMAGE_TO_PATCH="${IMAGE_TO_PATCH}" PATCH_REPORT_OUTPUT_FILE="reports/${IMAGE_TO_PATCH_NORMALIZED}.patched.md" + + echo "IMAGE_TO_PATCH_NORMALIZED=${IMAGE_TO_PATCH_NORMALIZED}" >> "$GITHUB_OUTPUT" - name: publish CVE patching report for ${{ matrix.image_to_patch }} uses: actions/upload-artifact@v4 with: - name: patch-report-${{ matrix.image_to_patch }}.md + name: patch-report-${{ steps.patching.outputs.IMAGE_TO_PATCH_NORMALIZED }}.md path: | CVEs/reports/*.patched.md scan_post_patch: