-
Notifications
You must be signed in to change notification settings - Fork 2
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
sync: deps: update dependency anchore/syft to v1.16.0 #76
base: redhat-latest
Are you sure you want to change the base?
sync: deps: update dependency anchore/syft to v1.16.0 #76
Commits on Jul 22, 2024
-
chore(deps): bump github/codeql-action from 3.25.12 to 3.25.13 (#3059)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.25.12 to 3.25.13. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@4fa2a79...2d79040) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for b263b1e - Browse repository at this point
Copy the full SHA b263b1eView commit details -
chore(deps): bump docker/login-action from 3.2.0 to 3.3.0 (#3058)
Bumps [docker/login-action](https://github.com/docker/login-action) from 3.2.0 to 3.3.0. - [Release notes](https://github.com/docker/login-action/releases) - [Commits](docker/login-action@0d4c9c5...9780b0c) --- updated-dependencies: - dependency-name: docker/login-action dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 0c53a08 - Browse repository at this point
Copy the full SHA 0c53a08View commit details -
chore(deps): bump modernc.org/sqlite from 1.30.2 to 1.31.1 (#3057)
Bumps [modernc.org/sqlite](https://gitlab.com/cznic/sqlite) from 1.30.2 to 1.31.1. - [Commits](https://gitlab.com/cznic/sqlite/compare/v1.30.2...v1.31.1) --- updated-dependencies: - dependency-name: modernc.org/sqlite dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for d0a7d4c - Browse repository at this point
Copy the full SHA d0a7d4cView commit details -
chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.4 to 0.5.5…
… (#3056) Bumps [github.com/gkampitakis/go-snaps](https://github.com/gkampitakis/go-snaps) from 0.5.4 to 0.5.5. - [Release notes](https://github.com/gkampitakis/go-snaps/releases) - [Commits](gkampitakis/go-snaps@v0.5.4...v0.5.5) --- updated-dependencies: - dependency-name: github.com/gkampitakis/go-snaps dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 536611f - Browse repository at this point
Copy the full SHA 536611fView commit details -
chore(deps): bump github.com/docker/docker (#3055)
Bumps [github.com/docker/docker](https://github.com/docker/docker) from 27.0.3+incompatible to 27.1.0+incompatible. - [Release notes](https://github.com/docker/docker/releases) - [Commits](moby/moby@v27.0.3...v27.1.0) --- updated-dependencies: - dependency-name: github.com/docker/docker dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for aead40e - Browse repository at this point
Copy the full SHA aead40eView commit details -
chore(deps): update CPE dictionary index (#3035)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for bfe6f52 - Browse repository at this point
Copy the full SHA bfe6f52View commit details -
chore: add debug logging for errors reading RPM files (#3051)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 125c787 - Browse repository at this point
Copy the full SHA 125c787View commit details -
chore(deps): bump github.com/charmbracelet/lipgloss from 0.11.1 to 0.…
…12.1 (#3040) * chore(deps): bump github.com/charmbracelet/lipgloss Bumps [github.com/charmbracelet/lipgloss](https://github.com/charmbracelet/lipgloss) from 0.11.1 to 0.12.1. - [Release notes](https://github.com/charmbracelet/lipgloss/releases) - [Changelog](https://github.com/charmbracelet/lipgloss/blob/master/.goreleaser.yml) - [Commits](charmbracelet/lipgloss@v0.11.1...v0.12.1) --- updated-dependencies: - dependency-name: github.com/charmbracelet/lipgloss dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> * chore: pin fedora linux/amd64 to sha Signed-off-by: Christopher Phillips <[email protected]> --------- Signed-off-by: dependabot[bot] <[email protected]> Signed-off-by: Christopher Phillips <[email protected]> Signed-off-by: Christopher Angelo Phillips <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com> Co-authored-by: Christopher Phillips <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for fe7c5a7 - Browse repository at this point
Copy the full SHA fe7c5a7View commit details
Commits on Jul 23, 2024
-
chore(deps): update tools to latest versions (#3061)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for ca945d1 - Browse repository at this point
Copy the full SHA ca945d1View commit details
Commits on Jul 24, 2024
-
better go mod detection from partial package builds (#3060)
Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 9573f55 - Browse repository at this point
Copy the full SHA 9573f55View commit details -
Configuration menu - View commit details
-
Copy full SHA for 741c8fb - Browse repository at this point
Copy the full SHA 741c8fbView commit details
Commits on Jul 25, 2024
-
chore(deps): bump github/codeql-action from 3.25.13 to 3.25.14 (#3072)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.25.13 to 3.25.14. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@2d79040...5cf07d8) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 3917989 - Browse repository at this point
Copy the full SHA 3917989View commit details -
chore(deps): bump github.com/docker/docker (#3066)
Bumps [github.com/docker/docker](https://github.com/docker/docker) from 27.1.0+incompatible to 27.1.1+incompatible. - [Release notes](https://github.com/docker/docker/releases) - [Commits](moby/moby@v27.1.0...v27.1.1) --- updated-dependencies: - dependency-name: github.com/docker/docker dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 68b96ae - Browse repository at this point
Copy the full SHA 68b96aeView commit details -
python-cataloger: normalize package names (#3069)
Signed-off-by: mikcl <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 36f95d6 - Browse repository at this point
Copy the full SHA 36f95d6View commit details -
python cataloger: allow dots in python package names (#3070)
Signed-off-by: mikcl <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for b3848f7 - Browse repository at this point
Copy the full SHA b3848f7View commit details -
Only match ldflag version if it matches the main module or targets ma…
…in.version (#3062) Signed-off-by: Laurent Goderre <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 4882d2e - Browse repository at this point
Copy the full SHA 4882d2eView commit details -
python-cataloger: fix normalization test (#3073)
Signed-off-by: mikcl <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1cd75b7 - Browse repository at this point
Copy the full SHA 1cd75b7View commit details
Commits on Jul 29, 2024
-
fix: traefik classifier (#3077)
Signed-off-by: witchcraze <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 490e05a - Browse repository at this point
Copy the full SHA 490e05aView commit details -
chore(deps): bump github/codeql-action from 3.25.14 to 3.25.15 (#3083)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.25.14 to 3.25.15. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@5cf07d8...afb54ba) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 8dd7c9c - Browse repository at this point
Copy the full SHA 8dd7c9cView commit details -
chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.5 to 0.5.6…
… (#3082) Bumps [github.com/gkampitakis/go-snaps](https://github.com/gkampitakis/go-snaps) from 0.5.5 to 0.5.6. - [Release notes](https://github.com/gkampitakis/go-snaps/releases) - [Commits](gkampitakis/go-snaps@v0.5.5...v0.5.6) --- updated-dependencies: - dependency-name: github.com/gkampitakis/go-snaps dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for a35e410 - Browse repository at this point
Copy the full SHA a35e410View commit details -
chore(deps): update CPE dictionary index (#3079)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a2042e6 - Browse repository at this point
Copy the full SHA a2042e6View commit details -
chore(deps): update stereoscope to 50ce3be7aa1fb8829234ae648215e79071…
…96bfa5 (#3075) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 06526e2 - Browse repository at this point
Copy the full SHA 06526e2View commit details
Commits on Jul 30, 2024
-
fix: improve determinism in java archive identification (#3085)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a4b5dcd - Browse repository at this point
Copy the full SHA a4b5dcdView commit details
Commits on Jul 31, 2024
-
Added the SWI Prolog (swipl) ecosystem (#3076)
* Add binary classifier for swipl Signed-off-by: Laurent Goderre <[email protected]> * Added cataloger for SWI Prolog Pack packages Signed-off-by: Laurent Goderre <[email protected]> --------- Signed-off-by: Laurent Goderre <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 92d63df - Browse repository at this point
Copy the full SHA 92d63dfView commit details
Commits on Aug 1, 2024
-
chore: update release script to use gh from binny (#3084)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 05a10e8 - Browse repository at this point
Copy the full SHA 05a10e8View commit details -
fix: update mainModuleVersion function to always prefix
v
to findin……gs (#3087) * chore: basic fix Signed-off-by: Christopher Phillips <[email protected]> * test: make sure ldflags are prefixed with v --------- Signed-off-by: Christopher Phillips <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for c84cb2c - Browse repository at this point
Copy the full SHA c84cb2cView commit details -
fix: update 'guessMainPackageNameAndVersionFromPomInfo' and 'artifact…
…IDMatchesFilename' (#3054) - Correct retrieval of package name when main POM file exists - Address issue where wrong package name was retrieved for certain jars - Example case: 'jansi' jar containing multiple jars like 'jansi-win32' - Ensure true is returned when filename matches the artifact ID, prevent random retrieval by checking prefix and suffix - Use fallback check with suffix and prefix if no POM properties file matches the exact artifact name Signed-off-by: dor-hayun <[email protected]> Co-authored-by: dor-hayun <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 48f1e97 - Browse repository at this point
Copy the full SHA 48f1e97View commit details
Commits on Aug 2, 2024
-
chore(deps): update tools to latest versions (#3091)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 623532e - Browse repository at this point
Copy the full SHA 623532eView commit details
Commits on Aug 3, 2024
-
fix: use organization for package supplier when reading Java vendor f…
…ields (#3093) Signed-off-by: Harippriya Sivapatham <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for cc15edc - Browse repository at this point
Copy the full SHA cc15edcView commit details
Commits on Aug 5, 2024
-
feat: improved java maven property resolution (#2769)
Signed-off-by: Gijs Calis <[email protected]> Signed-off-by: Keith Zantow <[email protected]> Co-authored-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 9d40d11 - Browse repository at this point
Copy the full SHA 9d40d11View commit details
Commits on Aug 6, 2024
-
chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.6 to 0.5.7…
… (#3097) Bumps [github.com/gkampitakis/go-snaps](https://github.com/gkampitakis/go-snaps) from 0.5.6 to 0.5.7. - [Release notes](https://github.com/gkampitakis/go-snaps/releases) - [Commits](gkampitakis/go-snaps@v0.5.6...v0.5.7) --- updated-dependencies: - dependency-name: github.com/gkampitakis/go-snaps dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 703330a - Browse repository at this point
Copy the full SHA 703330aView commit details -
chore(deps): bump golang.org/x/mod from 0.19.0 to 0.20.0 (#3096)
Bumps [golang.org/x/mod](https://github.com/golang/mod) from 0.19.0 to 0.20.0. - [Commits](golang/mod@v0.19.0...v0.20.0) --- updated-dependencies: - dependency-name: golang.org/x/mod dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 0f9df80 - Browse repository at this point
Copy the full SHA 0f9df80View commit details -
chore(deps): update CPE dictionary index (#3094)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 214a049 - Browse repository at this point
Copy the full SHA 214a049View commit details -
chore(deps): bump actions/upload-artifact from 4.3.4 to 4.3.5 (#3095)
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.3.4 to 4.3.5. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@0b2256b...89ef406) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for dcd87d1 - Browse repository at this point
Copy the full SHA dcd87d1View commit details
Commits on Aug 7, 2024
-
chore(deps): bump golang.org/x/net from 0.27.0 to 0.28.0 (#3104)
Bumps [golang.org/x/net](https://github.com/golang/net) from 0.27.0 to 0.28.0. - [Commits](golang/net@v0.27.0...v0.28.0) --- updated-dependencies: - dependency-name: golang.org/x/net dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 040b683 - Browse repository at this point
Copy the full SHA 040b683View commit details -
chore(deps): bump github.com/google/go-containerregistry (#3103)
Bumps [github.com/google/go-containerregistry](https://github.com/google/go-containerregistry) from 0.20.1 to 0.20.2. - [Release notes](https://github.com/google/go-containerregistry/releases) - [Changelog](https://github.com/google/go-containerregistry/blob/main/.goreleaser.yml) - [Commits](google/go-containerregistry@v0.20.1...v0.20.2) --- updated-dependencies: - dependency-name: github.com/google/go-containerregistry dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 47d192d - Browse repository at this point
Copy the full SHA 47d192dView commit details -
chore(deps): bump actions/upload-artifact from 4.3.5 to 4.3.6 (#3102)
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.3.5 to 4.3.6. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@89ef406...834a144) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 9031592 - Browse repository at this point
Copy the full SHA 9031592View commit details -
chore(deps): bump github/codeql-action from 3.25.15 to 3.26.0 (#3101)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.25.15 to 3.26.0. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@afb54ba...eb055d7) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 2339743 - Browse repository at this point
Copy the full SHA 2339743View commit details -
chore(deps): update tools to latest versions (#3099)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1fb47d9 - Browse repository at this point
Copy the full SHA 1fb47d9View commit details
Commits on Aug 8, 2024
-
chore(deps): bump sigstore/cosign-installer from 3.5.0 to 3.6.0 (#3107)
Bumps [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer) from 3.5.0 to 3.6.0. - [Release notes](https://github.com/sigstore/cosign-installer/releases) - [Commits](sigstore/cosign-installer@v3.5.0...v3.6.0) --- updated-dependencies: - dependency-name: sigstore/cosign-installer dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 6267d69 - Browse repository at this point
Copy the full SHA 6267d69View commit details -
chore(deps): bump modernc.org/sqlite from 1.31.1 to 1.32.0 (#3106)
Bumps [modernc.org/sqlite](https://gitlab.com/cznic/sqlite) from 1.31.1 to 1.32.0. - [Commits](https://gitlab.com/cznic/sqlite/compare/v1.31.1...v1.32.0) --- updated-dependencies: - dependency-name: modernc.org/sqlite dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 64a9ecb - Browse repository at this point
Copy the full SHA 64a9ecbView commit details
Commits on Aug 9, 2024
-
test: increase java purl generation test coverage (#3110)
ensures correct package url generation for more java packages now that syft has more deterministic results per anchore/syft#3085 Signed-off-by: Weston Steimel <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 19cc664 - Browse repository at this point
Copy the full SHA 19cc664View commit details
Commits on Aug 12, 2024
-
update-slack-to-discourse (#3111)
Signed-off-by: Alan Pope <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 49d4e32 - Browse repository at this point
Copy the full SHA 49d4e32View commit details -
chore: fix failing python relationship test (#3117)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for cf85450 - Browse repository at this point
Copy the full SHA cf85450View commit details -
chore: fix some comments (#3114)
Signed-off-by: luozexuan <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for c19cf62 - Browse repository at this point
Copy the full SHA c19cf62View commit details -
* add kar Signed-off-by: tomersein <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 91cf066 - Browse repository at this point
Copy the full SHA 91cf066View commit details -
chore(deps): update CPE dictionary index (#3116)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]> Co-authored-by: Christopher Phillips <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for d2b33f1 - Browse repository at this point
Copy the full SHA d2b33f1View commit details -
fix: improve groupid extraction for Jenkins plugins (#2815)
* fix: improve groupid extraction for Jenkins plugins Consider the `Group-Id` java manifest property as this is typically set for Jenkins plugins if there is no pom file Signed-off-by: Weston Steimel <[email protected]> * test: update java purl integration test image Signed-off-by: Weston Steimel <[email protected]> --------- Signed-off-by: Weston Steimel <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for df1e5b5 - Browse repository at this point
Copy the full SHA df1e5b5View commit details -
fix: read CycloneDX BOM components from metadata (#3092)
Signed-off-by: dervoeti <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 3161e18 - Browse repository at this point
Copy the full SHA 3161e18View commit details
Commits on Aug 13, 2024
-
fix: add nil check to CycloneDX toBomProperties (#3119)
Signed-off-by: Lucas Rodriguez <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for cd3b828 - Browse repository at this point
Copy the full SHA cd3b828View commit details
Commits on Aug 15, 2024
-
chore(deps): bump github/codeql-action from 3.26.0 to 3.26.2 (#3129)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.0 to 3.26.2. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@eb055d7...429e197) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for a447884 - Browse repository at this point
Copy the full SHA a447884View commit details -
chore(deps): bump anchore/sbom-action from 0.17.0 to 0.17.1 (#3124)
Bumps [anchore/sbom-action](https://github.com/anchore/sbom-action) from 0.17.0 to 0.17.1. - [Release notes](https://github.com/anchore/sbom-action/releases) - [Commits](anchore/sbom-action@d94f46e...ab9d16d) --- updated-dependencies: - dependency-name: anchore/sbom-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 965000d - Browse repository at this point
Copy the full SHA 965000dView commit details -
chore(deps): bump github.com/docker/docker (#3123)
Bumps [github.com/docker/docker](https://github.com/docker/docker) from 27.1.1+incompatible to 27.1.2+incompatible. - [Release notes](https://github.com/docker/docker/releases) - [Commits](moby/moby@v27.1.1...v27.1.2) --- updated-dependencies: - dependency-name: github.com/docker/docker dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 4ff60ee - Browse repository at this point
Copy the full SHA 4ff60eeView commit details
Commits on Aug 16, 2024
-
chore(deps): update tools to latest versions (#3121)
* chore(deps): update tools to latest versions Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> * chore: update code to reflect new linter settings for error messages Signed-off-by: Christopher Phillips <[email protected]> --------- Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Signed-off-by: Christopher Phillips <[email protected]> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 4b7ae0e - Browse repository at this point
Copy the full SHA 4b7ae0eView commit details
Commits on Aug 19, 2024
-
chore(deps): bump github.com/charmbracelet/bubbletea (#3137)
Bumps [github.com/charmbracelet/bubbletea](https://github.com/charmbracelet/bubbletea) from 0.26.6 to 0.27.0. - [Release notes](https://github.com/charmbracelet/bubbletea/releases) - [Changelog](https://github.com/charmbracelet/bubbletea/blob/master/.goreleaser.yml) - [Commits](charmbracelet/bubbletea@v0.26.6...v0.27.0) --- updated-dependencies: - dependency-name: github.com/charmbracelet/bubbletea dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 360983f - Browse repository at this point
Copy the full SHA 360983fView commit details -
chore(deps): update CPE dictionary index (#3135)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 511cc9c - Browse repository at this point
Copy the full SHA 511cc9cView commit details
Commits on Aug 20, 2024
-
fix: logging for remote network calls (#3140)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 95b4a88 - Browse repository at this point
Copy the full SHA 95b4a88View commit details -
chore(deps): bump github/codeql-action from 3.26.2 to 3.26.3 (#3139)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.2 to 3.26.3. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@429e197...883d858) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for f786233 - Browse repository at this point
Copy the full SHA f786233View commit details
Commits on Aug 21, 2024
-
fix: mysql 8.0.3x binary detection (#3142)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 73b9d5a - Browse repository at this point
Copy the full SHA 73b9d5aView commit details
Commits on Aug 22, 2024
-
chore(deps): bump github.com/anchore/stereoscope (#3153)
Bumps [github.com/anchore/stereoscope](https://github.com/anchore/stereoscope) from 0.0.3-0.20240725180315-50ce3be7aa1f to 0.0.3. - [Release notes](https://github.com/anchore/stereoscope/releases) - [Changelog](https://github.com/anchore/stereoscope/blob/main/.goreleaser.yaml) - [Commits](https://github.com/anchore/stereoscope/commits/v0.0.3) --- updated-dependencies: - dependency-name: github.com/anchore/stereoscope dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for bd80eea - Browse repository at this point
Copy the full SHA bd80eeaView commit details -
chore(deps): bump github.com/charmbracelet/lipgloss (#3147)
Bumps [github.com/charmbracelet/lipgloss](https://github.com/charmbracelet/lipgloss) from 0.12.1 to 0.13.0. - [Release notes](https://github.com/charmbracelet/lipgloss/releases) - [Changelog](https://github.com/charmbracelet/lipgloss/blob/master/.goreleaser.yml) - [Commits](charmbracelet/lipgloss@v0.12.1...v0.13.0) --- updated-dependencies: - dependency-name: github.com/charmbracelet/lipgloss dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 78d48b4 - Browse repository at this point
Copy the full SHA 78d48b4View commit details -
chore(deps): bump github.com/charmbracelet/bubbles from 0.18.0 to 0.1…
…9.0 (#3148) Bumps [github.com/charmbracelet/bubbles](https://github.com/charmbracelet/bubbles) from 0.18.0 to 0.19.0. - [Release notes](https://github.com/charmbracelet/bubbles/releases) - [Changelog](https://github.com/charmbracelet/bubbles/blob/master/.goreleaser.yml) - [Commits](charmbracelet/bubbles@v0.18.0...v0.19.0) --- updated-dependencies: - dependency-name: github.com/charmbracelet/bubbles dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for ac97724 - Browse repository at this point
Copy the full SHA ac97724View commit details -
chore(deps): update stereoscope to e6d086e8bef5fab4fcfbd60c9a759c4cb2…
…29decf (#3152) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 691f34c - Browse repository at this point
Copy the full SHA 691f34cView commit details -
chore(deps): bump github/codeql-action from 3.26.3 to 3.26.4 (#3154)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.3 to 3.26.4. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@883d858...f0f3afe) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 6f02308 - Browse repository at this point
Copy the full SHA 6f02308View commit details -
chore(deps): bump anchore/sbom-action from 0.17.1 to 0.17.2 (#3155)
Bumps [anchore/sbom-action](https://github.com/anchore/sbom-action) from 0.17.1 to 0.17.2. - [Release notes](https://github.com/anchore/sbom-action/releases) - [Commits](anchore/sbom-action@ab9d16d...61119d4) --- updated-dependencies: - dependency-name: anchore/sbom-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 9ab3de1 - Browse repository at this point
Copy the full SHA 9ab3de1View commit details
Commits on Aug 23, 2024
-
Configuration menu - View commit details
-
Copy full SHA for cff9d49 - Browse repository at this point
Copy the full SHA cff9d49View commit details -
Configuration menu - View commit details
-
Copy full SHA for dad2537 - Browse repository at this point
Copy the full SHA dad2537View commit details
Commits on Aug 26, 2024
-
Configuration menu - View commit details
-
Copy full SHA for b6b5c8e - Browse repository at this point
Copy the full SHA b6b5c8eView commit details -
chore(deps): bump github/codeql-action from 3.26.4 to 3.26.5 (#3162)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.4 to 3.26.5. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@f0f3afe...2c779ab) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 6549ec9 - Browse repository at this point
Copy the full SHA 6549ec9View commit details -
chore(deps): update CPE dictionary index (#3161)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 0cd6185 - Browse repository at this point
Copy the full SHA 0cd6185View commit details -
chore(deps): update tools to latest versions (#3160)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for cf9bb13 - Browse repository at this point
Copy the full SHA cf9bb13View commit details
Commits on Aug 27, 2024
-
fix: use official CPE for curl binary cataloger (#3164)
The official CPE for curl is `cpe:2.3:a:haxx:curl:*:*:*:*:*:*:*:*` Signed-off-by: Weston Steimel <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 99be365 - Browse repository at this point
Copy the full SHA 99be365View commit details -
set cataloger names within package cataloger task (#3165)
Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 4ee6c17 - Browse repository at this point
Copy the full SHA 4ee6c17View commit details -
respond to authoratative CPEs from catalogers (#3166)
Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e9a8c27 - Browse repository at this point
Copy the full SHA e9a8c27View commit details -
fix: improve known CPEs and set NVD as source for all current binary …
…classifiers (#3167) Signed-off-by: Weston Steimel <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 5ab43ba - Browse repository at this point
Copy the full SHA 5ab43baView commit details
Commits on Aug 28, 2024
-
fix: add log time of task (#3105)
Signed-off-by: tomersein <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 04e3371 - Browse repository at this point
Copy the full SHA 04e3371View commit details -
fix: improve generated cpes for binaries with existing classifiers (#…
…3169) The existing syft binary classifiers already specify any known CPEs for the defined binary; however, sometimes these end up getting suppressed (such as when there are ELF notes extracted) and the CPE generator ends up being used instead. This adds enough detail to at least ensure the correct ones get appended to the generation list for the currently covered classifiers. Signed-off-by: Weston Steimel <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 2c25f81 - Browse repository at this point
Copy the full SHA 2c25f81View commit details -
fix: cycles resolving relative path parent poms with parent-defined v…
…ariables (#3170) Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 11d77b4 - Browse repository at this point
Copy the full SHA 11d77b4View commit details
Commits on Aug 29, 2024
-
Configuration menu - View commit details
-
Copy full SHA for 19d2735 - Browse repository at this point
Copy the full SHA 19d2735View commit details -
Configuration menu - View commit details
-
Copy full SHA for 3499d92 - Browse repository at this point
Copy the full SHA 3499d92View commit details -
Configuration menu - View commit details
-
Copy full SHA for 731fc77 - Browse repository at this point
Copy the full SHA 731fc77View commit details -
fix: properly decode SPDX license expressions in CycloneDX format (#3…
…175) Signed-off-by: Mikail Kocak <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f2caf45 - Browse repository at this point
Copy the full SHA f2caf45View commit details
Commits on Sep 3, 2024
-
chore(deps): bump peter-evans/create-pull-request from 6.1.0 to 7.0.0…
… (#3187) Bumps [peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request) from 6.1.0 to 7.0.0. - [Release notes](https://github.com/peter-evans/create-pull-request/releases) - [Commits](peter-evans/create-pull-request@c5a7806...4320041) --- updated-dependencies: - dependency-name: peter-evans/create-pull-request dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for e299a95 - Browse repository at this point
Copy the full SHA e299a95View commit details -
chore(deps): bump actions/upload-artifact from 4.3.6 to 4.4.0 (#3184)
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.3.6 to 4.4.0. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@834a144...5076954) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 8ade391 - Browse repository at this point
Copy the full SHA 8ade391View commit details -
chore(deps): update CPE dictionary index (#3183)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 8c690d0 - Browse repository at this point
Copy the full SHA 8c690d0View commit details -
chore(deps): bump github.com/Masterminds/sprig/v3 from 3.2.3 to 3.3.0…
… (#3177) Bumps [github.com/Masterminds/sprig/v3](https://github.com/Masterminds/sprig) from 3.2.3 to 3.3.0. - [Release notes](https://github.com/Masterminds/sprig/releases) - [Changelog](https://github.com/Masterminds/sprig/blob/master/CHANGELOG.md) - [Commits](Masterminds/sprig@v3.2.3...v3.3.0) --- updated-dependencies: - dependency-name: github.com/Masterminds/sprig/v3 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 7c96a10 - Browse repository at this point
Copy the full SHA 7c96a10View commit details
Commits on Sep 5, 2024
-
fix: haproxy classifier for versions with -dev suffix (#3180)
Signed-off-by: witchcraze <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a343825 - Browse repository at this point
Copy the full SHA a343825View commit details -
chore(deps): bump golang.org/x/mod from 0.20.0 to 0.21.0 (#3197)
Bumps [golang.org/x/mod](https://github.com/golang/mod) from 0.20.0 to 0.21.0. - [Commits](golang/mod@v0.20.0...v0.21.0) --- updated-dependencies: - dependency-name: golang.org/x/mod dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for ff0bae6 - Browse repository at this point
Copy the full SHA ff0bae6View commit details -
chore(deps): bump peter-evans/create-pull-request from 7.0.0 to 7.0.1…
… (#3196) Bumps [peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request) from 7.0.0 to 7.0.1. - [Release notes](https://github.com/peter-evans/create-pull-request/releases) - [Commits](peter-evans/create-pull-request@4320041...8867c4a) --- updated-dependencies: - dependency-name: peter-evans/create-pull-request dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for deabd41 - Browse repository at this point
Copy the full SHA deabd41View commit details
Commits on Sep 9, 2024
-
Slim down docker cache size (#3190)
* slim down docker cache size Signed-off-by: Alex Goodman <[email protected]> * remove old centos images Signed-off-by: Alex Goodman <[email protected]> * troubleshoot test failure Signed-off-by: Alex Goodman <[email protected]> * fix wget version ref Signed-off-by: Alex Goodman <[email protected]> * refactor caching mechanisms Signed-off-by: Alex Goodman <[email protected]> * add cache cleanup steps Signed-off-by: Alex Goodman <[email protected]> * simplify deleting cache Signed-off-by: Alex Goodman <[email protected]> * fix first clone issue Signed-off-by: Alex Goodman <[email protected]> * add tool dep Signed-off-by: Alex Goodman <[email protected]> --------- Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 0a3f513 - Browse repository at this point
Copy the full SHA 0a3f513View commit details -
less verbose java logging when non-fatal issues arise (#3208)
Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for b153b1d - Browse repository at this point
Copy the full SHA b153b1dView commit details -
dont cleanup cache in forks (#3214)
Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for ba7bf6b - Browse repository at this point
Copy the full SHA ba7bf6bView commit details -
chore(deps): bump github.com/dave/jennifer from 1.7.0 to 1.7.1 (#3212)
Bumps [github.com/dave/jennifer](https://github.com/dave/jennifer) from 1.7.0 to 1.7.1. - [Commits](dave/jennifer@v1.7.0...v1.7.1) --- updated-dependencies: - dependency-name: github.com/dave/jennifer dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for f735a42 - Browse repository at this point
Copy the full SHA f735a42View commit details -
chore(deps): bump github.com/docker/docker (#3211)
Bumps [github.com/docker/docker](https://github.com/docker/docker) from 27.2.0+incompatible to 27.2.1+incompatible. - [Release notes](https://github.com/docker/docker/releases) - [Commits](moby/moby@v27.2.0...v27.2.1) --- updated-dependencies: - dependency-name: github.com/docker/docker dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 2475f7f - Browse repository at this point
Copy the full SHA 2475f7fView commit details -
chore(deps): bump modernc.org/sqlite from 1.32.0 to 1.33.0 (#3210)
Bumps [modernc.org/sqlite](https://gitlab.com/cznic/sqlite) from 1.32.0 to 1.33.0. - [Commits](https://gitlab.com/cznic/sqlite/compare/v1.32.0...v1.33.0) --- updated-dependencies: - dependency-name: modernc.org/sqlite dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 16f8984 - Browse repository at this point
Copy the full SHA 16f8984View commit details -
chore(deps): bump github.com/charmbracelet/bubbles from 0.19.0 to 0.2…
…0.0 (#3209) Bumps [github.com/charmbracelet/bubbles](https://github.com/charmbracelet/bubbles) from 0.19.0 to 0.20.0. - [Release notes](https://github.com/charmbracelet/bubbles/releases) - [Changelog](https://github.com/charmbracelet/bubbles/blob/master/.goreleaser.yml) - [Commits](charmbracelet/bubbles@v0.19.0...v0.20.0) --- updated-dependencies: - dependency-name: github.com/charmbracelet/bubbles dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for dafc6ad - Browse repository at this point
Copy the full SHA dafc6adView commit details
Commits on Sep 10, 2024
-
Add the Ocaml ecosystem (#3112)
Signed-off-by: Laurent Goderre <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 9c2799e - Browse repository at this point
Copy the full SHA 9c2799eView commit details -
chore(deps): bump golang.org/x/net from 0.28.0 to 0.29.0 (#3203)
Bumps [golang.org/x/net](https://github.com/golang/net) from 0.28.0 to 0.29.0. - [Commits](golang/net@v0.28.0...v0.29.0) --- updated-dependencies: - dependency-name: golang.org/x/net dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 98bd4e9 - Browse repository at this point
Copy the full SHA 98bd4e9View commit details -
chore(deps): update CPE dictionary index (#3206)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for fce14fd - Browse repository at this point
Copy the full SHA fce14fdView commit details -
Add haskell binaries cataloger (#3078)
Signed-off-by: Laurent Goderre <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for dbc4238 - Browse repository at this point
Copy the full SHA dbc4238View commit details -
chore: restore ci-check.sh script (#3218)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for c33a51d - Browse repository at this point
Copy the full SHA c33a51dView commit details -
chore(deps): bump github.com/opencontainers/runc from 1.1.12 to 1.1.1…
…4 (#3219) Bumps [github.com/opencontainers/runc](https://github.com/opencontainers/runc) from 1.1.12 to 1.1.14. - [Release notes](https://github.com/opencontainers/runc/releases) - [Changelog](https://github.com/opencontainers/runc/blob/main/CHANGELOG.md) - [Commits](opencontainers/runc@v1.1.12...v1.1.14) --- updated-dependencies: - dependency-name: github.com/opencontainers/runc dependency-type: indirect ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 61a9fde - Browse repository at this point
Copy the full SHA 61a9fdeView commit details
Commits on Sep 11, 2024
-
chore: make ci-check.sh an executable file (#3220)
Signed-off-by: Ryuichi Okumura <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for fcd5ec9 - Browse repository at this point
Copy the full SHA fcd5ec9View commit details
Commits on Sep 12, 2024
-
feat: --enrich flag for data enrichment feature enablement (#3182)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1b86326 - Browse repository at this point
Copy the full SHA 1b86326View commit details
Commits on Sep 13, 2024
-
chore(deps): bump modernc.org/sqlite from 1.33.0 to 1.33.1 (#3229)
Bumps [modernc.org/sqlite](https://gitlab.com/cznic/sqlite) from 1.33.0 to 1.33.1. - [Commits](https://gitlab.com/cznic/sqlite/compare/v1.33.0...v1.33.1) --- updated-dependencies: - dependency-name: modernc.org/sqlite dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 38e51f1 - Browse repository at this point
Copy the full SHA 38e51f1View commit details -
chore(deps): bump peter-evans/create-pull-request from 7.0.1 to 7.0.2…
… (#3226) Bumps [peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request) from 7.0.1 to 7.0.2. - [Release notes](https://github.com/peter-evans/create-pull-request/releases) - [Commits](peter-evans/create-pull-request@8867c4a...d121e62) --- updated-dependencies: - dependency-name: peter-evans/create-pull-request dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 2b4d5c2 - Browse repository at this point
Copy the full SHA 2b4d5c2View commit details -
chore(deps): bump github.com/charmbracelet/bubbletea from 1.1.0 to 1.…
…1.1 (#3225) Bumps [github.com/charmbracelet/bubbletea](https://github.com/charmbracelet/bubbletea) from 1.1.0 to 1.1.1. - [Release notes](https://github.com/charmbracelet/bubbletea/releases) - [Changelog](https://github.com/charmbracelet/bubbletea/blob/main/.goreleaser.yml) - [Commits](charmbracelet/bubbletea@v1.1.0...v1.1.1) --- updated-dependencies: - dependency-name: github.com/charmbracelet/bubbletea dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 834027e - Browse repository at this point
Copy the full SHA 834027eView commit details -
chore(deps): update tools to latest versions (#3205)
* chore(deps): update tools to latest versions Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> * chore: disable gosec(G115) A change to the rule gosec(G115) made a large amount of FP for gosec appear when updating to the latest golang-ci linter. securego/gosec#1185 securego/gosec#1149 We're going to ignore this rule for the time being while waiting for gosec to get updates so that bound checking and example snippets of `valid` code is added for this rule Signed-off-by: Christopher Phillips <[email protected]> --------- Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Signed-off-by: Christopher Phillips <[email protected]> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 58100fe - Browse repository at this point
Copy the full SHA 58100feView commit details
Commits on Sep 16, 2024
-
chore(deps): update CPE dictionary index (#3232)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 41e9630 - Browse repository at this point
Copy the full SHA 41e9630View commit details -
chore(deps): update tools to latest versions (#3231)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 7b4feb7 - Browse repository at this point
Copy the full SHA 7b4feb7View commit details -
chore(deps): bump peter-evans/create-pull-request from 7.0.2 to 7.0.3…
… (#3240) Bumps [peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request) from 7.0.2 to 7.0.3. - [Release notes](https://github.com/peter-evans/create-pull-request/releases) - [Commits](peter-evans/create-pull-request@d121e62...6cd32fd) --- updated-dependencies: - dependency-name: peter-evans/create-pull-request dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 9cc3641 - Browse repository at this point
Copy the full SHA 9cc3641View commit details -
chore(deps): bump github/codeql-action from 3.26.6 to 3.26.7 (#3241)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.6 to 3.26.7. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@4dd1613...8214744) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 48c1c45 - Browse repository at this point
Copy the full SHA 48c1c45View commit details -
chore(deps): bump github.com/CycloneDX/cyclonedx-go from 0.9.0 to 0.9…
….1 (#3242) Bumps [github.com/CycloneDX/cyclonedx-go](https://github.com/CycloneDX/cyclonedx-go) from 0.9.0 to 0.9.1. - [Release notes](https://github.com/CycloneDX/cyclonedx-go/releases) - [Changelog](https://github.com/CycloneDX/cyclonedx-go/blob/master/.goreleaser.yml) - [Commits](CycloneDX/cyclonedx-go@v0.9.0...v0.9.1) --- updated-dependencies: - dependency-name: github.com/CycloneDX/cyclonedx-go dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for b9efac4 - Browse repository at this point
Copy the full SHA b9efac4View commit details
Commits on Sep 17, 2024
-
chore(deps): update tools to latest versions (#3243)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 7934696 - Browse repository at this point
Copy the full SHA 7934696View commit details
Commits on Sep 18, 2024
-
chore(deps): update tools to latest versions (#3247)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a2f12fe - Browse repository at this point
Copy the full SHA a2f12feView commit details
Commits on Sep 19, 2024
-
chore(deps): update tools to latest versions (#3251)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 50016c3 - Browse repository at this point
Copy the full SHA 50016c3View commit details -
fix: capture-snippet.sh can handle leading whitespaces now (#3249) (#…
…3250) Signed-off-by: Gorny Krystian <[email protected]> Co-authored-by: Gorny Krystian <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for cb0de97 - Browse repository at this point
Copy the full SHA cb0de97View commit details -
feat: add binary classifiers for lighttp, proftpd, zstd, xz, gzip, jq…
…, and sqlcipher (#3252) * feat: detect lighttpd binaries Signed-off-by: Krystian Gorny <[email protected]> * feat: detect proftpd binaries Signed-off-by: Krystian Gorny <[email protected]> * feat: detect zstd binaries Signed-off-by: Krystian Gorny <[email protected]> * feat: detect xz utils binarie Signed-off-by: Krystian Gorny <[email protected]> * feat: detect gzip binaries Signed-off-by: Krystian Gorny <[email protected]> * feat: detect sqlcipher binaries Signed-off-by: Krystian Gorny <[email protected]> * feat: detect jq binaries Signed-off-by: Krystian Gorny <[email protected]> * add tests + snippets Signed-off-by: Alex Goodman <[email protected]> --------- Signed-off-by: Krystian Gorny <[email protected]> Signed-off-by: Alex Goodman <[email protected]> Co-authored-by: Krystian Gorny <[email protected]> Co-authored-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 6a95a5f - Browse repository at this point
Copy the full SHA 6a95a5fView commit details
Commits on Sep 20, 2024
-
chore(deps): bump github.com/docker/docker (#3260)
Bumps [github.com/docker/docker](https://github.com/docker/docker) from 27.2.1+incompatible to 27.3.0+incompatible. - [Release notes](https://github.com/docker/docker/releases) - [Commits](moby/moby@v27.2.1...v27.3.0) --- updated-dependencies: - dependency-name: github.com/docker/docker dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 98c96ce - Browse repository at this point
Copy the full SHA 98c96ceView commit details -
chore(deps): update tools to latest versions (#3259)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a08ea86 - Browse repository at this point
Copy the full SHA a08ea86View commit details -
chore(deps): bump github/codeql-action from 3.26.7 to 3.26.8 (#3256)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.7 to 3.26.8. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@8214744...294a9d9) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 9b5cf1d - Browse repository at this point
Copy the full SHA 9b5cf1dView commit details -
chore(deps): bump peter-evans/create-pull-request from 7.0.3 to 7.0.5…
… (#3255) Bumps [peter-evans/create-pull-request](https://github.com/peter-evans/create-pull-request) from 7.0.3 to 7.0.5. - [Release notes](https://github.com/peter-evans/create-pull-request/releases) - [Commits](peter-evans/create-pull-request@6cd32fd...5e91468) --- updated-dependencies: - dependency-name: peter-evans/create-pull-request dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 7c12e3f - Browse repository at this point
Copy the full SHA 7c12e3fView commit details -
chore(deps): bump github.com/github/go-spdx/v2 from 2.3.1 to 2.3.2 (#…
…3254) Bumps [github.com/github/go-spdx/v2](https://github.com/github/go-spdx) from 2.3.1 to 2.3.2. - [Release notes](https://github.com/github/go-spdx/releases) - [Commits](github/go-spdx@v2.3.1...v2.3.2) --- updated-dependencies: - dependency-name: github.com/github/go-spdx/v2 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 60bbd24 - Browse repository at this point
Copy the full SHA 60bbd24View commit details -
Add compliance policy for empty name and version (#3257)
* add policy for empty name and version Signed-off-by: Alex Goodman <[email protected]> * default stub version Signed-off-by: Alex Goodman <[email protected]> * modifying ids requires augmenting relationships Signed-off-by: Alex Goodman <[email protected]> --------- Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 963ea59 - Browse repository at this point
Copy the full SHA 963ea59View commit details
Commits on Sep 23, 2024
-
feat: classifier for Dart lang binaries (#3265)
Signed-off-by: Laurent Goderre <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 7815d8e - Browse repository at this point
Copy the full SHA 7815d8eView commit details -
* add jvm cataloger Signed-off-by: Alex Goodman <[email protected]> * simplify version selection Signed-off-by: Alex Goodman <[email protected]> * CPEs from JVM cataloger should be declared Signed-off-by: Alex Goodman <[email protected]> * ensure package overlap is enabled for sensitive use cases Signed-off-by: Alex Goodman <[email protected]> * more permissive glob Signed-off-by: Alex Goodman <[email protected]> --------- Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 01de99b - Browse repository at this point
Copy the full SHA 01de99bView commit details
Commits on Sep 24, 2024
-
fix: correct excluded mount point comparison to file paths (#3269)
Signed-off-by: Christian Dupuis <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 92c1dde - Browse repository at this point
Copy the full SHA 92c1ddeView commit details
Commits on Sep 25, 2024
-
add awaiting response management (#3272)
Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for d7005d7 - Browse repository at this point
Copy the full SHA d7005d7View commit details
Commits on Sep 26, 2024
-
chore(deps): bump actions/checkout from 4.1.7 to 4.2.0 (#3283)
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.1.7 to 4.2.0. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@692973e...d632683) --- updated-dependencies: - dependency-name: actions/checkout dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 39b2bf5 - Browse repository at this point
Copy the full SHA 39b2bf5View commit details -
chore(deps): update stereoscope to dc10ea61fd18efa45b516eda4de8bc19d8…
…322429 (#3280) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 16122eb - Browse repository at this point
Copy the full SHA 16122ebView commit details -
chore(deps): bump github/codeql-action from 3.26.8 to 3.26.9 (#3275)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.8 to 3.26.9. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@294a9d9...461ef6c) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for f9ef9cf - Browse repository at this point
Copy the full SHA f9ef9cfView commit details -
chore(deps): bump github.com/docker/docker (#3264)
Bumps [github.com/docker/docker](https://github.com/docker/docker) from 27.3.0+incompatible to 27.3.1+incompatible. - [Release notes](https://github.com/docker/docker/releases) - [Commits](moby/moby@v27.3.0...v27.3.1) --- updated-dependencies: - dependency-name: github.com/docker/docker dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 5393cd5 - Browse repository at this point
Copy the full SHA 5393cd5View commit details -
chore(deps): update CPE dictionary index (#3262)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e37c468 - Browse repository at this point
Copy the full SHA e37c468View commit details
Commits on Sep 27, 2024
-
fix: update ruby classifier for -rc, -dev, etc. versions (#3285)
Signed-off-by: witchcraze <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1a746b2 - Browse repository at this point
Copy the full SHA 1a746b2View commit details -
fix: improve node classifier version matching (#3284)
Signed-off-by: witchcraze <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 2a3d171 - Browse repository at this point
Copy the full SHA 2a3d171View commit details
Commits on Sep 30, 2024
-
update redis classifier (#3281)
* update redis classifier Signed-off-by: witchcraze <[email protected]> * Remove snippets to pass Validation. In this case, 9000 byte was required... Signed-off-by: witchcraze <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f5f8005 - Browse repository at this point
Copy the full SHA f5f8005View commit details
Commits on Oct 1, 2024
-
chore(deps): bump github/codeql-action from 3.26.9 to 3.26.10 (#3289)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.9 to 3.26.10. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@461ef6c...e2b3eaf) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 9b242b0 - Browse repository at this point
Copy the full SHA 9b242b0View commit details -
chore(deps): update CPE dictionary index (#3288)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 93beceb - Browse repository at this point
Copy the full SHA 93becebView commit details -
fix: don't use builtin scanner in licensecheck (#3290)
Signed-off-by: Niv Govrin <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for dbad17d - Browse repository at this point
Copy the full SHA dbad17dView commit details
Commits on Oct 2, 2024
-
chore(deps): update tools to latest versions (#3291)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for cc4f62b - Browse repository at this point
Copy the full SHA cc4f62bView commit details -
feat: update haproxy classifier (#3277)
Signed-off-by: witchcraze <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 263ea6b - Browse repository at this point
Copy the full SHA 263ea6bView commit details
Commits on Oct 3, 2024
-
chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.5.9 to 6.6.0…
… (#3293) Bumps [github.com/jedib0t/go-pretty/v6](https://github.com/jedib0t/go-pretty) from 6.5.9 to 6.6.0. - [Release notes](https://github.com/jedib0t/go-pretty/releases) - [Commits](jedib0t/go-pretty@v6.5.9...v6.6.0) --- updated-dependencies: - dependency-name: github.com/jedib0t/go-pretty/v6 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 32c0d1e - Browse repository at this point
Copy the full SHA 32c0d1eView commit details -
Fix: make failed CPE validation correctly return error (#2762)
* Test CPE attributes correctly returns error Previously, this method incorrectly return an empty Attributes object and a nil error, leading to callers attempting to use the empty attributes object. Signed-off-by: Will Murphy <[email protected]> * chore: merge with main and refactor call that relied on old nil behavior Signed-off-by: Christopher Phillips <[email protected]> * test: add test to cover new OSCPE err pattern Signed-off-by: Christopher Phillips <[email protected]> --------- Signed-off-by: Will Murphy <[email protected]> Signed-off-by: Christopher Phillips <[email protected]> Co-authored-by: Christopher Phillips <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 770fdc5 - Browse repository at this point
Copy the full SHA 770fdc5View commit details
Commits on Oct 4, 2024
-
Track supporting DPKG evidence (#3228)
* add dpkg evidence support Signed-off-by: Alex Goodman <[email protected]> * use path over filepath Signed-off-by: Alex Goodman <[email protected]> --------- Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 13c6876 - Browse repository at this point
Copy the full SHA 13c6876View commit details
Commits on Oct 5, 2024
-
chore(deps): update tools to latest versions (#3296)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for fc84574 - Browse repository at this point
Copy the full SHA fc84574View commit details -
chore: add pull request template (#3294)
Signed-off-by: Will Murphy <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 0d45714 - Browse repository at this point
Copy the full SHA 0d45714View commit details -
chore(deps): bump github/codeql-action from 3.26.10 to 3.26.11 (#3298)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.10 to 3.26.11. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@e2b3eaf...6db8d63) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 25f5c67 - Browse repository at this point
Copy the full SHA 25f5c67View commit details
Commits on Oct 7, 2024
-
Fix: Parse package.json with non-standard fields in 'author' section …
…(#3300) * Improved parsing of package.json 'author' section Signed-off-by: Piotr Radkowski <[email protected]> * test: parse 'package.json' files with non-standard fields in author section Signed-off-by: Piotr Radkowski <[email protected]> --------- Signed-off-by: Piotr Radkowski <[email protected]> Co-authored-by: Piotr Radkowski <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 3b9c55d - Browse repository at this point
Copy the full SHA 3b9c55dView commit details -
chore(deps): update CPE dictionary index (#3302)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 27ee203 - Browse repository at this point
Copy the full SHA 27ee203View commit details -
chore(deps): bump actions/cache from 4.0.2 to 4.1.0 (#3305)
Bumps [actions/cache](https://github.com/actions/cache) from 4.0.2 to 4.1.0. - [Release notes](https://github.com/actions/cache/releases) - [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md) - [Commits](actions/cache@0c45773...2cdf405) --- updated-dependencies: - dependency-name: actions/cache dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 7b30ce1 - Browse repository at this point
Copy the full SHA 7b30ce1View commit details -
chore(deps): bump golang.org/x/net from 0.29.0 to 0.30.0 (#3304)
Bumps [golang.org/x/net](https://github.com/golang/net) from 0.29.0 to 0.30.0. - [Commits](golang/net@v0.29.0...v0.30.0) --- updated-dependencies: - dependency-name: golang.org/x/net dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 8b6159d - Browse repository at this point
Copy the full SHA 8b6159dView commit details -
chore(deps): update stereoscope to efa76446cc1c7e6c4117350943a2754b24…
…53aec4 (#3301) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 4c4e5cb - Browse repository at this point
Copy the full SHA 4c4e5cbView commit details -
chore(deps): bump sigstore/cosign-installer from 3.6.0 to 3.7.0 (#3299)
Bumps [sigstore/cosign-installer](https://github.com/sigstore/cosign-installer) from 3.6.0 to 3.7.0. - [Release notes](https://github.com/sigstore/cosign-installer/releases) - [Commits](sigstore/cosign-installer@v3.6.0...v3.7.0) --- updated-dependencies: - dependency-name: sigstore/cosign-installer dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 4d7ed9f - Browse repository at this point
Copy the full SHA 4d7ed9fView commit details -
feat: report unknowns in sbom (#2998)
Signed-off-by: Keith Zantow <[email protected]> Signed-off-by: Alex Goodman <[email protected]> Co-authored-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for ccbee94 - Browse repository at this point
Copy the full SHA ccbee94View commit details
Commits on Oct 9, 2024
-
Configuration menu - View commit details
-
Copy full SHA for 37c179b - Browse repository at this point
Copy the full SHA 37c179bView commit details -
Configuration menu - View commit details
-
Copy full SHA for 56ed131 - Browse repository at this point
Copy the full SHA 56ed131View commit details -
Configuration menu - View commit details
-
Copy full SHA for 5d165e0 - Browse repository at this point
Copy the full SHA 5d165e0View commit details
Commits on Oct 10, 2024
-
Configuration menu - View commit details
-
Copy full SHA for 5d068f3 - Browse repository at this point
Copy the full SHA 5d068f3View commit details -
Configuration menu - View commit details
-
Copy full SHA for 223a52d - Browse repository at this point
Copy the full SHA 223a52dView commit details -
[docs] Add mastodon link to README.md (#3306)
Hello friends. This follows the same pattern as the other badges at the top of the readme. It adds the mastodon link to the Syft account. This also means that the link back here from the Mastodon account's profile page will show as 'Validated' once landed, which gives more authenticity to the account. Signed-off-by: Alan Pope <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for b62b0cb - Browse repository at this point
Copy the full SHA b62b0cbView commit details -
docs: clearer deprecation message for --file (#3310)
It's not clear to users that they shoudl use --output FORMAT=PATH instead of --file. Directly suggest the FORMAT=PATH syntax. Signed-off-by: Will Murphy <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 0c71bf2 - Browse repository at this point
Copy the full SHA 0c71bf2View commit details
Commits on Oct 11, 2024
-
Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for fbff87f - Browse repository at this point
Copy the full SHA fbff87fView commit details -
chore(deps): bump actions/upload-artifact from 4.4.1 to 4.4.3 (#3314)
Bumps [actions/upload-artifact](https://github.com/actions/upload-artifact) from 4.4.1 to 4.4.3. - [Release notes](https://github.com/actions/upload-artifact/releases) - [Commits](actions/upload-artifact@604373d...b4b15b8) --- updated-dependencies: - dependency-name: actions/upload-artifact dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for c2c8c79 - Browse repository at this point
Copy the full SHA c2c8c79View commit details -
chore(deps): bump github.com/bmatcuk/doublestar/v4 from 4.6.1 to 4.7.…
…0 (#3321) Bumps [github.com/bmatcuk/doublestar/v4](https://github.com/bmatcuk/doublestar) from 4.6.1 to 4.7.0. - [Release notes](https://github.com/bmatcuk/doublestar/releases) - [Commits](bmatcuk/doublestar@v4.6.1...v4.7.0) --- updated-dependencies: - dependency-name: github.com/bmatcuk/doublestar/v4 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 6124d72 - Browse repository at this point
Copy the full SHA 6124d72View commit details -
chore(deps): update stereoscope to c04af061af62ab3ba6ab6760613526eaa7…
…fcb163 (#3319) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 8487736 - Browse repository at this point
Copy the full SHA 8487736View commit details
Commits on Oct 13, 2024
-
chore(deps): update stereoscope to 92e97a1cf36d162bad51ccc6aba0cce7a4…
…dcfbf4 (#3322) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 8095f7b - Browse repository at this point
Copy the full SHA 8095f7bView commit details
Commits on Oct 14, 2024
-
fix: improve go binary semver extraction for traefik (#3325)
Improves the go cataloger semver extraction logic to include getting the release version of traefik. This is based off of the regex pattern that already existed in the traefik binary classifier. Signed-off-by: Weston Steimel <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e962c10 - Browse repository at this point
Copy the full SHA e962c10View commit details -
chore(deps): update CPE dictionary index (#3323)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f6e5405 - Browse repository at this point
Copy the full SHA f6e5405View commit details -
chore(deps): bump github/codeql-action from 3.26.12 to 3.26.13 (#3327)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.12 to 3.26.13. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@c36620d...f779452) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 67faca4 - Browse repository at this point
Copy the full SHA 67faca4View commit details -
chore(deps): bump anchore/sbom-action from 0.17.2 to 0.17.3 (#3326)
Bumps [anchore/sbom-action](https://github.com/anchore/sbom-action) from 0.17.2 to 0.17.3. - [Release notes](https://github.com/anchore/sbom-action/releases) - [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md) - [Commits](anchore/sbom-action@61119d4...f5e124a) --- updated-dependencies: - dependency-name: anchore/sbom-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 39146aa - Browse repository at this point
Copy the full SHA 39146aaView commit details -
chore(deps): update stereoscope to 93f8a11331e3d50f751e4d0ec5b63f3df3…
…09e9e5 (#3331) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: willmurphyscode <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 7c69367 - Browse repository at this point
Copy the full SHA 7c69367View commit details -
chore(deps): update stereoscope to 1cc8a41d447d0d092699be2b700b8ba62e…
…870434 (#3332) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: willmurphyscode <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 5c0df63 - Browse repository at this point
Copy the full SHA 5c0df63View commit details
Commits on Oct 15, 2024
-
chore(deps): update stereoscope to 1cc8a41d447d0d092699be2b700b8ba62e…
…870434 (#3334) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: willmurphyscode <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 138c6e3 - Browse repository at this point
Copy the full SHA 138c6e3View commit details -
fix: stop some log.Warn spam due parsing an empty string as a CPE (#3…
…330) * chore: don't try to parse empty string as CPE Signed-off-by: Will Murphy <[email protected]> * chore: improve OS name and version extraction from ELF metadata Signed-off-by: Will Murphy <[email protected]> --------- Signed-off-by: Will Murphy <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 754cebe - Browse repository at this point
Copy the full SHA 754cebeView commit details
Commits on Oct 16, 2024
-
fix: improve mariadb binary classifer to detect older versions (#3339)
With older versions of mariadb the binary name was `mysql`, so this adjusts the binary classifier to additionally search for the expected version pattern in `mysql` binaries. Signed-off-by: Weston Steimel <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for d7194bb - Browse repository at this point
Copy the full SHA d7194bbView commit details -
chore(deps): bump anchore/sbom-action from 0.17.3 to 0.17.4 (#3340)
Bumps [anchore/sbom-action](https://github.com/anchore/sbom-action) from 0.17.3 to 0.17.4. - [Release notes](https://github.com/anchore/sbom-action/releases) - [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md) - [Commits](anchore/sbom-action@f5e124a...8d0a650) --- updated-dependencies: - dependency-name: anchore/sbom-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 80c8bc1 - Browse repository at this point
Copy the full SHA 80c8bc1View commit details
Commits on Oct 17, 2024
-
fix: use official CPE for linux kernel (#3343)
Signed-off-by: Weston Steimel <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 5b9601d - Browse repository at this point
Copy the full SHA 5b9601dView commit details -
chore(deps): bump github.com/adrg/xdg from 0.5.0 to 0.5.1 (#3344)
Bumps [github.com/adrg/xdg](https://github.com/adrg/xdg) from 0.5.0 to 0.5.1. - [Release notes](https://github.com/adrg/xdg/releases) - [Commits](adrg/xdg@v0.5.0...v0.5.1) --- updated-dependencies: - dependency-name: github.com/adrg/xdg dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for f2646d0 - Browse repository at this point
Copy the full SHA f2646d0View commit details -
chore(deps): update stereoscope to 9e57bce5efeb0ffe27770dd0b8eb2eef8b…
…38512f (#3338) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 7adbdfe - Browse repository at this point
Copy the full SHA 7adbdfeView commit details -
chore(deps): update tools to latest versions (#3342)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 3267545 - Browse repository at this point
Copy the full SHA 3267545View commit details
Commits on Oct 18, 2024
-
update to latest packageurl-go (#3347)
Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 56dbb34 - Browse repository at this point
Copy the full SHA 56dbb34View commit details
Commits on Oct 21, 2024
-
chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.6.0 to 6.6.1…
… (#3361) Bumps [github.com/jedib0t/go-pretty/v6](https://github.com/jedib0t/go-pretty) from 6.6.0 to 6.6.1. - [Release notes](https://github.com/jedib0t/go-pretty/releases) - [Commits](jedib0t/go-pretty@v6.6.0...v6.6.1) --- updated-dependencies: - dependency-name: github.com/jedib0t/go-pretty/v6 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 5a37b4a - Browse repository at this point
Copy the full SHA 5a37b4aView commit details -
chore(deps): update CPE dictionary index (#3358)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e38825a - Browse repository at this point
Copy the full SHA e38825aView commit details -
chore(deps): update stereoscope to a38c93517fc7d67ca1af826ac529a06c05…
…b571d2 (#3357) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 14355aa - Browse repository at this point
Copy the full SHA 14355aaView commit details -
Create single license scanner for all catalogers (#3348)
* add single license scanner instance Signed-off-by: Alex Goodman <[email protected]> * rename testing license scanner Signed-off-by: Alex Goodman <[email protected]> --------- Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e4e985b - Browse repository at this point
Copy the full SHA e4e985bView commit details
Commits on Oct 22, 2024
-
chore(deps): bump github.com/go-git/go-billy/v5 from 5.5.0 to 5.6.0 (…
…#3367) Bumps [github.com/go-git/go-billy/v5](https://github.com/go-git/go-billy) from 5.5.0 to 5.6.0. - [Release notes](https://github.com/go-git/go-billy/releases) - [Commits](go-git/go-billy@v5.5.0...v5.6.0) --- updated-dependencies: - dependency-name: github.com/go-git/go-billy/v5 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 6a2898e - Browse repository at this point
Copy the full SHA 6a2898eView commit details -
chore(deps): bump anchore/sbom-action from 0.17.4 to 0.17.5 (#3365)
Bumps [anchore/sbom-action](https://github.com/anchore/sbom-action) from 0.17.4 to 0.17.5. - [Release notes](https://github.com/anchore/sbom-action/releases) - [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md) - [Commits](anchore/sbom-action@8d0a650...1ca97d9) --- updated-dependencies: - dependency-name: anchore/sbom-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for b5cde13 - Browse repository at this point
Copy the full SHA b5cde13View commit details -
chore(deps): bump actions/cache from 4.1.1 to 4.1.2 (#3364)
Bumps [actions/cache](https://github.com/actions/cache) from 4.1.1 to 4.1.2. - [Release notes](https://github.com/actions/cache/releases) - [Changelog](https://github.com/actions/cache/blob/main/RELEASES.md) - [Commits](actions/cache@3624ceb...6849a64) --- updated-dependencies: - dependency-name: actions/cache dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for fc524a0 - Browse repository at this point
Copy the full SHA fc524a0View commit details -
chore(deps): update stereoscope to 6db3c175f1f836e552b01ee70e5d5528cc…
…04bce4 (#3362) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 260d809 - Browse repository at this point
Copy the full SHA 260d809View commit details
Commits on Oct 23, 2024
-
chore(deps): bump github.com/charmbracelet/lipgloss (#3375)
Bumps [github.com/charmbracelet/lipgloss](https://github.com/charmbracelet/lipgloss) from 0.13.0 to 0.13.1. - [Release notes](https://github.com/charmbracelet/lipgloss/releases) - [Changelog](https://github.com/charmbracelet/lipgloss/blob/master/.goreleaser.yml) - [Commits](charmbracelet/lipgloss@v0.13.0...v0.13.1) --- updated-dependencies: - dependency-name: github.com/charmbracelet/lipgloss dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 1133546 - Browse repository at this point
Copy the full SHA 1133546View commit details -
chore(deps): bump github/codeql-action from 3.26.13 to 3.27.0 (#3374)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.26.13 to 3.27.0. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@f779452...6624720) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 80333d3 - Browse repository at this point
Copy the full SHA 80333d3View commit details -
Enable cargo-auditable-binary-cataloger for files/directories (#3376)
Especially when scanning a single binary file, the cargo-auditable-binary-cataloger should run and report the rust binary's dependencies: ``` scan --select-catalogers rust <binary_file> ``` This is in line with other binary catalogers, such as the go-module-binary-cataloger. Signed-off-by: Ariel Miculas-Trif <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 06d300e - Browse repository at this point
Copy the full SHA 06d300eView commit details -
Expanded dpkg cataloger globs (#3373)
Signed-off-by: Nathan Voss <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for b505317 - Browse repository at this point
Copy the full SHA b505317View commit details -
feat: Java dependency graph information (#3363)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a00533c - Browse repository at this point
Copy the full SHA a00533cView commit details -
feat: multi-level configuration and profiles (#3337)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 759b898 - Browse repository at this point
Copy the full SHA 759b898View commit details
Commits on Oct 24, 2024
-
chore(deps): bump actions/checkout from 4.2.1 to 4.2.2 (#3380)
Bumps [actions/checkout](https://github.com/actions/checkout) from 4.2.1 to 4.2.2. - [Release notes](https://github.com/actions/checkout/releases) - [Changelog](https://github.com/actions/checkout/blob/main/CHANGELOG.md) - [Commits](actions/checkout@eef6144...11bd719) --- updated-dependencies: - dependency-name: actions/checkout dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for a0c62da - Browse repository at this point
Copy the full SHA a0c62daView commit details
Commits on Oct 28, 2024
-
chore(deps): update CPE dictionary index (#3387)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for c7c0366 - Browse repository at this point
Copy the full SHA c7c0366View commit details -
chore(deps): update tools to latest versions (#3383)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 5faa6d3 - Browse repository at this point
Copy the full SHA 5faa6d3View commit details -
chore(deps): bump github.com/charmbracelet/bubbletea from 1.1.1 to 1.…
…1.2 (#3385) Bumps [github.com/charmbracelet/bubbletea](https://github.com/charmbracelet/bubbletea) from 1.1.1 to 1.1.2. - [Release notes](https://github.com/charmbracelet/bubbletea/releases) - [Changelog](https://github.com/charmbracelet/bubbletea/blob/main/.goreleaser.yml) - [Commits](charmbracelet/bubbletea@v1.1.1...v1.1.2) --- updated-dependencies: - dependency-name: github.com/charmbracelet/bubbletea dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 46445ff - Browse repository at this point
Copy the full SHA 46445ffView commit details -
chore(deps): bump actions/setup-go from 5.0.2 to 5.1.0 (#3384)
Bumps [actions/setup-go](https://github.com/actions/setup-go) from 5.0.2 to 5.1.0. - [Release notes](https://github.com/actions/setup-go/releases) - [Commits](actions/setup-go@0a12ed9...41dfa10) --- updated-dependencies: - dependency-name: actions/setup-go dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 367c699 - Browse repository at this point
Copy the full SHA 367c699View commit details -
chore(deps): update stereoscope to bcc40c6817524718277256d6b774ce643f…
…98640a (#3388) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: willmurphyscode <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 55cc187 - Browse repository at this point
Copy the full SHA 55cc187View commit details -
fix: bad pom files may cause infinite loop (#3391)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1118ac4 - Browse repository at this point
Copy the full SHA 1118ac4View commit details
Commits on Oct 29, 2024
-
fix: stack overflow in spyingIoReadCloser (#3392)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 798c18a - Browse repository at this point
Copy the full SHA 798c18aView commit details -
chore(deps): bump anchore/sbom-action from 0.17.5 to 0.17.6 (#3393)
Bumps [anchore/sbom-action](https://github.com/anchore/sbom-action) from 0.17.5 to 0.17.6. - [Release notes](https://github.com/anchore/sbom-action/releases) - [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md) - [Commits](anchore/sbom-action@1ca97d9...251a468) --- updated-dependencies: - dependency-name: anchore/sbom-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 9dc9be6 - Browse repository at this point
Copy the full SHA 9dc9be6View commit details -
Configuration menu - View commit details
-
Copy full SHA for df3998b - Browse repository at this point
Copy the full SHA df3998bView commit details
Commits on Oct 30, 2024
-
feat: exclude devDependencies from package-lock.json parsing (#3371)
Signed-off-by: Nathan Voss <[email protected]> Signed-off-by: Keith Zantow <[email protected]> Co-authored-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a55b71d - Browse repository at this point
Copy the full SHA a55b71dView commit details
Commits on Oct 31, 2024
-
chore(deps): update stereoscope to 9c92fe30492ffeba14ed2e23ad1fd92334…
…1dda4f (#3398) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 9302e20 - Browse repository at this point
Copy the full SHA 9302e20View commit details -
feat: support dependencies and purl for Native Image SBOMs (#3399)
Signed-off-by: Joel Rudsberg <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for fcf1350 - Browse repository at this point
Copy the full SHA fcf1350View commit details
Commits on Nov 1, 2024
-
Issue #3143 – fixed format conversion docs link (#3407)
* chore: fixed format conversion docs link (#3143) Signed-off-by: Artemii Fedotov <[email protected]> * changed link to wiki docs Signed-off-by: Artemii Fedotov <[email protected]> --------- Signed-off-by: Artemii Fedotov <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 6a1e3f3 - Browse repository at this point
Copy the full SHA 6a1e3f3View commit details -
chore(deps): update stereoscope to 2ce1e520983b1c21d5150d7fae2b39e8e5…
…ab9063 (#3405) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 8f179e6 - Browse repository at this point
Copy the full SHA 8f179e6View commit details -
chore(deps): bump github.com/charmbracelet/lipgloss from 0.13.1 to 1.…
…0.0 (#3409) Bumps [github.com/charmbracelet/lipgloss](https://github.com/charmbracelet/lipgloss) from 0.13.1 to 1.0.0. - [Release notes](https://github.com/charmbracelet/lipgloss/releases) - [Changelog](https://github.com/charmbracelet/lipgloss/blob/master/.goreleaser.yml) - [Commits](charmbracelet/lipgloss@v0.13.1...v1.0.0) --- updated-dependencies: - dependency-name: github.com/charmbracelet/lipgloss dependency-type: direct:production update-type: version-update:semver-major ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 2c70090 - Browse repository at this point
Copy the full SHA 2c70090View commit details -
chore(deps): bump github.com/adrg/xdg from 0.5.2 to 0.5.3 (#3408)
Bumps [github.com/adrg/xdg](https://github.com/adrg/xdg) from 0.5.2 to 0.5.3. - [Release notes](https://github.com/adrg/xdg/releases) - [Commits](adrg/xdg@v0.5.2...v0.5.3) --- updated-dependencies: - dependency-name: github.com/adrg/xdg dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 203df65 - Browse repository at this point
Copy the full SHA 203df65View commit details
Commits on Nov 4, 2024
-
chore(deps): update CPE dictionary index (#3414)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 849e325 - Browse repository at this point
Copy the full SHA 849e325View commit details -
chore(deps): update stereoscope to cbd43fb4e5d348fe680066ee6329385fd6…
…a4f827 (#3411) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for eb56f2e - Browse repository at this point
Copy the full SHA eb56f2eView commit details -
chore: prevent file resolver from bubbling errors in binary cataloger…
… (#3410) Signed-off-by: Christopher Phillips <[email protected]> Signed-off-by: Keith Zantow <[email protected]> Co-authored-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 8a41d77 - Browse repository at this point
Copy the full SHA 8a41d77View commit details
Commits on Nov 5, 2024
-
chore: build release sbom from go.mod (#3417)
Signed-off-by: Keith Zantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 16eedd8 - Browse repository at this point
Copy the full SHA 16eedd8View commit details
Commits on Nov 6, 2024
-
chore(deps): bump anchore/sbom-action from 0.17.6 to 0.17.7 (#3418)
Bumps [anchore/sbom-action](https://github.com/anchore/sbom-action) from 0.17.6 to 0.17.7. - [Release notes](https://github.com/anchore/sbom-action/releases) - [Changelog](https://github.com/anchore/sbom-action/blob/main/RELEASE.md) - [Commits](anchore/sbom-action@251a468...fc46e51) --- updated-dependencies: - dependency-name: anchore/sbom-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for defb08d - Browse repository at this point
Copy the full SHA defb08dView commit details
Commits on Nov 7, 2024
-
doc: Add official Syft logo license information (#3421)
This clarifies the license under which the Syft "owl" logo is released. This is necessary to enable us to share the logo in certain online communities. Signed-off-by: Alan Pope <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 3c070e0 - Browse repository at this point
Copy the full SHA 3c070e0View commit details
Commits on Nov 8, 2024
-
restore log on ui teardown (#3427)
Signed-off-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for b0bffef - Browse repository at this point
Copy the full SHA b0bffefView commit details
Commits on Nov 12, 2024
-
chore(deps): bump github.com/charmbracelet/bubbletea from 1.1.2 to 1.…
…2.1 (#3433) Bumps [github.com/charmbracelet/bubbletea](https://github.com/charmbracelet/bubbletea) from 1.1.2 to 1.2.1. - [Release notes](https://github.com/charmbracelet/bubbletea/releases) - [Changelog](https://github.com/charmbracelet/bubbletea/blob/main/.goreleaser.yml) - [Commits](charmbracelet/bubbletea@v1.1.2...v1.2.1) --- updated-dependencies: - dependency-name: github.com/charmbracelet/bubbletea dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 8a7da59 - Browse repository at this point
Copy the full SHA 8a7da59View commit details -
chore(deps): bump golang.org/x/net from 0.30.0 to 0.31.0 (#3432)
Bumps [golang.org/x/net](https://github.com/golang/net) from 0.30.0 to 0.31.0. - [Commits](golang/net@v0.30.0...v0.31.0) --- updated-dependencies: - dependency-name: golang.org/x/net dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 6e7c198 - Browse repository at this point
Copy the full SHA 6e7c198View commit details -
chore(deps): bump github/codeql-action from 3.27.0 to 3.27.1 (#3431)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.27.0 to 3.27.1. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@6624720...4f3212b) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 013a2fe - Browse repository at this point
Copy the full SHA 013a2feView commit details -
chore(deps): update CPE dictionary index (#3429)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 7c6483f - Browse repository at this point
Copy the full SHA 7c6483fView commit details -
chore(deps): update stereoscope to 120d9ea511e2f7a9887b443c52e66cd19b…
…b80b43 (#3424) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e463206 - Browse repository at this point
Copy the full SHA e463206View commit details -
update node classifier (#3419)
Signed-off-by: witchcraze <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 066aadb - Browse repository at this point
Copy the full SHA 066aadbView commit details -
chore(deps): bump golang.org/x/mod from 0.21.0 to 0.22.0 (#3426)
Bumps [golang.org/x/mod](https://github.com/golang/mod) from 0.21.0 to 0.22.0. - [Commits](golang/mod@v0.21.0...v0.22.0) --- updated-dependencies: - dependency-name: golang.org/x/mod dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 5187240 - Browse repository at this point
Copy the full SHA 5187240View commit details -
chore(deps): bump github/codeql-action from 3.27.1 to 3.27.2 (#3436)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.27.1 to 3.27.2. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@4f3212b...9278e42) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for abd6abe - Browse repository at this point
Copy the full SHA abd6abeView commit details -
chore(deps): update tools to latest versions (#3413)
* chore(deps): update tools to latest versions Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> * fix linting Signed-off-by: Alex Goodman <[email protected]> --------- Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Signed-off-by: Alex Goodman <[email protected]> Co-authored-by: spiffcs <[email protected]> Co-authored-by: Alex Goodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for ac8be4a - Browse repository at this point
Copy the full SHA ac8be4aView commit details
Commits on Nov 14, 2024
-
chore(deps): bump github.com/saferwall/pe from 1.5.4 to 1.5.5 (#3440)
Bumps [github.com/saferwall/pe](https://github.com/saferwall/pe) from 1.5.4 to 1.5.5. - [Release notes](https://github.com/saferwall/pe/releases) - [Changelog](https://github.com/saferwall/pe/blob/main/CHANGELOG.md) - [Commits](saferwall/pe@v1.5.4...v1.5.5) --- updated-dependencies: - dependency-name: github.com/saferwall/pe dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 5624d48 - Browse repository at this point
Copy the full SHA 5624d48View commit details -
chore(deps): bump github.com/charmbracelet/bubbletea from 1.2.1 to 1.…
…2.2 (#3439) Bumps [github.com/charmbracelet/bubbletea](https://github.com/charmbracelet/bubbletea) from 1.2.1 to 1.2.2. - [Release notes](https://github.com/charmbracelet/bubbletea/releases) - [Changelog](https://github.com/charmbracelet/bubbletea/blob/main/.goreleaser.yml) - [Commits](charmbracelet/bubbletea@v1.2.1...v1.2.2) --- updated-dependencies: - dependency-name: github.com/charmbracelet/bubbletea dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 94dd634 - Browse repository at this point
Copy the full SHA 94dd634View commit details -
chore(deps): bump github/codeql-action from 3.27.2 to 3.27.3 (#3438)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.27.2 to 3.27.3. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@9278e42...396bb3e) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for a15c5f6 - Browse repository at this point
Copy the full SHA a15c5f6View commit details -
chore(deps): update stereoscope to aa3a3ef4efe8d8759c9aa87261b405cc00…
…3bfc9a (#3442) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 926486a - Browse repository at this point
Copy the full SHA 926486aView commit details -
feat: emit dependency relationships found in Cargo.lock (#3443)
* feat: emit dependency relationships found in Cargo.lock Include updating test Cargo.lock to have dependencies on multiple versions of the same crate. Signed-off-by: Will Murphy <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for bc35345 - Browse repository at this point
Copy the full SHA bc35345View commit details
Commits on Nov 15, 2024
-
chore(deps): bump github/codeql-action from 3.27.3 to 3.27.4 (#3446)
Bumps [github/codeql-action](https://github.com/github/codeql-action) from 3.27.3 to 3.27.4. - [Release notes](https://github.com/github/codeql-action/releases) - [Changelog](https://github.com/github/codeql-action/blob/main/CHANGELOG.md) - [Commits](github/codeql-action@396bb3e...ea9e4e3) --- updated-dependencies: - dependency-name: github/codeql-action dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for e41f8df - Browse repository at this point
Copy the full SHA e41f8dfView commit details -
chore(deps): update tools to latest versions (#3444)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 70ef3f2 - Browse repository at this point
Copy the full SHA 70ef3f2View commit details
Commits on Nov 17, 2024
-
chore(deps): update tools to latest versions (#3448)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 93d90cb - Browse repository at this point
Copy the full SHA 93d90cbView commit details
Commits on Nov 18, 2024
-
chore(deps): update tools to latest versions (#3454)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 215ae2b - Browse repository at this point
Copy the full SHA 215ae2bView commit details -
chore(deps): update CPE dictionary index (#3453)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: wagoodman <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for d91150e - Browse repository at this point
Copy the full SHA d91150eView commit details -
chore(deps): bump modernc.org/sqlite from 1.33.1 to 1.34.1 (#3460)
Bumps [modernc.org/sqlite](https://gitlab.com/cznic/sqlite) from 1.33.1 to 1.34.1. - [Commits](https://gitlab.com/cznic/sqlite/compare/v1.33.1...v1.34.1) --- updated-dependencies: - dependency-name: modernc.org/sqlite dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 1c61e9c - Browse repository at this point
Copy the full SHA 1c61e9cView commit details
Commits on Nov 19, 2024
-
chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.6.1 to 6.6.2…
… (#3465) Bumps [github.com/jedib0t/go-pretty/v6](https://github.com/jedib0t/go-pretty) from 6.6.1 to 6.6.2. - [Release notes](https://github.com/jedib0t/go-pretty/releases) - [Commits](jedib0t/go-pretty@v6.6.1...v6.6.2) --- updated-dependencies: - dependency-name: github.com/jedib0t/go-pretty/v6 dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 35fa0cc - Browse repository at this point
Copy the full SHA 35fa0ccView commit details -
chore(deps): update tools to latest versions (#3463)
Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: spiffcs <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 8aef0c9 - Browse repository at this point
Copy the full SHA 8aef0c9View commit details -
3030 license declared spdx correction (#3461)
* feat: update hasExtractedLicense field to include license-ref candidates --------- Signed-off-by: Christopher Phillips <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e7b65c2 - Browse repository at this point
Copy the full SHA e7b65c2View commit details -
3122 valid license url characters (#3449)
* chore: strip unwanted characters from license URL --------- Signed-off-by: Christopher Phillips <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f4cad63 - Browse repository at this point
Copy the full SHA f4cad63View commit details -
fix: bump clio to pull in logging fix (#3466)
Previously, if SYFT_LOG_FILE was not set, and no TTY was present, log.Warn messages were discarded instead of being sent to stderr. Signed-off-by: Will Murphy <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for e65fe24 - Browse repository at this point
Copy the full SHA e65fe24View commit details
Commits on Nov 20, 2024
-
chore(deps): bump github.com/charmbracelet/bubbletea from 1.2.2 to 1.…
…2.3 (#3467) Bumps [github.com/charmbracelet/bubbletea](https://github.com/charmbracelet/bubbletea) from 1.2.2 to 1.2.3. - [Release notes](https://github.com/charmbracelet/bubbletea/releases) - [Changelog](https://github.com/charmbracelet/bubbletea/blob/main/.goreleaser.yml) - [Commits](charmbracelet/bubbletea@v1.2.2...v1.2.3) --- updated-dependencies: - dependency-name: github.com/charmbracelet/bubbletea dependency-type: direct:production update-type: version-update:semver-patch ... Signed-off-by: dependabot[bot] <[email protected]> Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for 19a30b9 - Browse repository at this point
Copy the full SHA 19a30b9View commit details
Commits on Nov 21, 2024
-
chore(deps): update stereoscope to aa3a3ef4efe8d8759c9aa87261b405cc00…
…3bfc9a (#3472) Signed-off-by: github-actions[bot] <41898282+github-actions[bot]@users.noreply.github.com> Co-authored-by: willmurphyscode <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for a8d4202 - Browse repository at this point
Copy the full SHA a8d4202View commit details -
Signed-off-by: downstream-sync <[email protected]>
downstream-sync committedNov 21, 2024 Configuration menu - View commit details
-
Copy full SHA for 9c10849 - Browse repository at this point
Copy the full SHA 9c10849View commit details -
Remove fluff to avoid SAST false positives
Signed-off-by: downstream-sync <[email protected]>
downstream-sync committedNov 21, 2024 Configuration menu - View commit details
-
Copy full SHA for 91158a0 - Browse repository at this point
Copy the full SHA 91158a0View commit details -
Apply Red Hat specific modifications
Signed-off-by: downstream-sync <[email protected]>
downstream-sync committedNov 21, 2024 Configuration menu - View commit details
-
Copy full SHA for e86f80e - Browse repository at this point
Copy the full SHA e86f80eView commit details -
Copy Tekton pipelines from 'redhat-latest' branch
Signed-off-by: downstream-sync <[email protected]>
downstream-sync committedNov 21, 2024 Configuration menu - View commit details
-
Copy full SHA for f93deb3 - Browse repository at this point
Copy the full SHA f93deb3View commit details