container scanning is failing with Permission denied

When building the build pipeline as in the attached file the container scanning works fine until it wants to upload the result. This will give the following error:

[INFO] [2021-12-27 11:36:41 +0000] [] ▶ Scanning container from registry xxx/backoffice:latest for vulnerabilities with severity level UNKNOWN or higher, with gcs 4.5.10 and Trivy Version: 0.21.2, advisories updated at 2021-12-26T06:41:26+00:00 [INFO] [2021-12-27 11:36:43 +0000] [] ▶ 2021-12-27T11:36:43.372Z INFO Detected OS: debian 2021-12-27T11:36:43.372Z INFO Detecting Debian vulnerabilities... 2021-12-27T11:36:43.390Z INFO Number of language-specific files: 1 2021-12-27T11:36:43.390Z INFO Detecting jar vulnerabilities... [ERROR] [2021-12-27 11:36:43 +0000] [] ▶ Permission denied @ rb_sysopen - /builds/business-services/backoffice/gl-dependency-scanning-report.json Uploading artifacts for failed job

.gitlab-ci.yml^

@gitlab-bot label ~"group::container security"

Edited Jan 03, 2022 by Rene Schakmann
Assignee Loading
Time tracking Loading