chore(deps): update docker.io/aquasec/trivy docker tag to v0.52.0
This MR contains the following updates:
Package | Update | Change | OpenSSF |
---|---|---|---|
docker.io/aquasec/trivy (source) | minor |
0.51.0 -> 0.52.0
|
Release Notes
aquasecurity/trivy (docker.io/aquasec/trivy)
v0.52.0
Features
- Add Julia language analyzer support (#5635) (fecafb1)
- add support for plugin index (#6674) (26faf8f)
- misconf: Add support for deprecating a check (#6664) (88702cf)
- misconf: add Terraform 'removed' block to schema (#6640) (b7a0a13)
- misconf: register builtin Rego funcs from trivy-checks (#6616) (7c22ee3)
- misconf: resolve tf module from OpenTofu compatible registry (#6743) (ac74520)
- misconf: support for VPC resources for inbound/outbound rules (#6779) (349caf9)
- misconf: support symlinks inside of Helm archives (#6621) (4eae37c)
- nodejs: add v9 pnpm lock file support (#6617) (1e08648)
- plugin: specify plugin version (#6683) (d6dc567)
-
python: add license support for
requirement.txt
files (#6782) (29615be) -
python: add line number support for
requirement.txt
files (#6729) (2bc54ad) - report: Include licenses and secrets filtered by rego to ModifiedFindings (#6483) (fa3cf99)
- vex: improve relationship support in CSAF VEX (#6735) (a447f6b)
- vex: support non-root components for products in OpenVEX (#6728) (9515695)
Bug Fixes
- clean up golangci lint configuration (#6797) (62de6f3)
- cli: always output fatal errors to stderr (#6827) (c2b9132)
- close APKINDEX archive file (#6672) (5caf437)
- close settings.xml (#6768) (9c3e895)
- close testfile (#6830) (aa0c413)
-
conda: add support
pip
deps forenvironment.yml
files (#6675) (150a773) -
go: add only non-empty root modules for
gobinaries
(#6710) (c96f2a5) -
go: include only
.version
|.ver
(no prefixes) ldflags forgobinaries
(#6705) (afb4f9d) - Golang version parsing from binaries w/GOEXPERIMENT (#6696) (696f2ae)
- include packages unless it is not needed (#6765) (56dbe1f)
- misconf: don't shift ignore rule related to code (#6708) (39a746c)
- misconf: skip Rego errors with a nil location (#6638) (a2c522d)
- misconf: skip Rego errors with a nil location (#6666) (a126e10)
- node-collector high and critical cves (#6707) (ff32deb)
- plugin: initialize logger (#6836) (728e77a)
-
python: add package name and version validation for
requirements.txt
files. (#6804) (ea3a124) - report: hide empty tables if all vulns has been filtered (#6352) (3d388d8)
-
sbom: fix panic for
convert
mode when scanning json file derived from sbom file (#6808) (f92ea09) - use of specified context to obtain cluster name (#6645) (39ebed4)
Performance Improvements
v0.51.4
Changelog
-
c06f467
chore: downgrade trivy-checks and trivy-aws -
df4f760
build: use main package instead of main.go (#6766) -
bf7a8ed
chore(deps): bump the common group across 1 directory with 29 updates (#6756) -
acb22c6
chore(deps): bump the aws group with 8 updates (#6738) -
9a3510f
chore(deps): bump the docker group with 2 updates (#6739) -
7806b37
ci: addgeneric
dir to deb deploy script (#6636)
v0.51.2
Changelog
-
eadc6fb
fix: node-collector high and critical cves (#6707) -
cc489b1
Merge pull request from GHSA-xcq4-m2r3-cmrj -
013f71a
chore: auto-bump golang patch versions (#6711) -
113a5b2
fix(misconf): don't shift ignore rule related to code (#6708) -
733e5ac
fix(go): include only.version
|.ver
(no prefixes) ldflags forgobinaries
(#6705) -
d311e49
fix(go): add only non-empty root modules forgobinaries
(#6710) -
cf1a7bf
refactor: unify package addition and vulnerability scanning (#6579) -
d465d9d
fix: Golang version parsing from binaries w/GOEXPERIMENT (#6696) -
0af225c
fix(conda): add supportpip
deps forenvironment.yml
files (#6675) -
6f64d55
fix(misconf): skip Rego errors with a nil location (#6666) -
8c27430
fix(misconf): skip Rego errors with a nil location (#6638) -
c2b46d3
refactor: unify Library and Package structs (#6633) -
4368f11
fix: use of specified context to obtain cluster name (#6645) -
5ec62f8
docs: fix usage of image-config-scanners (#6635)
v0.51.1
Changelog
Configuration
-
If you want to rebase/retry this MR, check this box
This MR has been generated by Renovate Bot. The local configuration can be found in the SI Renovate Bot repository.
Edited by Botaniker (Bot)