Blob Blame History Raw
<revisionlist>
  <revision rev="1" vrev="1">
    <srcmd5>ef19a10645920f2c04f13e6df974b769</srcmd5>
    <version>0.9.2</version>
    <time>1603203193</time>
    <user>dimstar_suse</user>
    <comment>add to factory please</comment>
    <requestid>842569</requestid>
  </revision>
  <revision rev="2" vrev="1">
    <srcmd5>f587c67db7e8de7f3f5fbac71f54ffec</srcmd5>
    <version>0.12.0</version>
    <time>1603284013</time>
    <user>dimstar_suse</user>
    <comment></comment>
    <requestid>843194</requestid>
  </revision>
  <revision rev="3" vrev="2">
    <srcmd5>e7311df79f571a1e649732bdf147f30f</srcmd5>
    <version>0.12.0</version>
    <time>1603979539</time>
    <user>dimstar_suse</user>
    <comment>- revert _service and build changes in last update to use
  the proper macros
- set VERSION parameter properly (jsc#CAPS-105)
- remove update-end-of-life-dates.patch

- Require golang &gt;= 1.15 to fix EINTR read issues (jsc#CAPS-170)

- add update-end-of-life-dates.patch</comment>
    <requestid>844854</requestid>
  </revision>
  <revision rev="4" vrev="3">
    <srcmd5>36d75130225803be0c01eba3a3ba5ac5</srcmd5>
    <version>0.12.0</version>
    <time>1604702737</time>
    <user>dimstar_suse</user>
    <comment>Automatic submission by obs-autosubmit</comment>
    <requestid>846494</requestid>
  </revision>
  <revision rev="5" vrev="1">
    <srcmd5>4bdaeebcafba5677fe43e0040783376e</srcmd5>
    <version>0.13.0</version>
    <time>1606649270</time>
    <user>dimstar_suse</user>
    <comment>- Update to version 0.13.0:
  * fix(oracle): handle ksplice advisories (#745)
  * fix: version comparison (#740)
  * updated Readme.md (#737)
  * Add suse sles 15.2 to the EOL list as well (#734)
  * Update README.md (#731)
  * Warn when a user attempts to use trivy without a detectable lockfile (#729)
  * Add back support for FreeBSD &amp; OpenBSD (#728)
  * Add support for ppc64le architecture (#724)
  * Skip packages from unsupported repository (remi) (#695)
  * Skip downloading DB if a remote DB is not updated (#717)
  * Sunsetting VendorVectors (#718)
  * Add GitHub Container Registry to README (#712)
  * update BUG_REPORT.md using H2 instead of bold formatting (#714)
  * fix(ci/deb): do not remove old packages for EOL versions (#706)
  * Add linter check support (#679)
  * Optimize images (#696)
  * Update triage.md (#701)
- remove 0001-Add-suse-sles-15.2-to-the-EOL-list-as-well.patch (merged)</comment>
    <requestid>851108</requestid>
  </revision>
  <revision rev="6" vrev="1">
    <srcmd5>da80bcc1993961330dfccc63f5e92dbe</srcmd5>
    <version>0.15.0</version>
    <time>1611068504</time>
    <user>dimstar_suse</user>
    <comment></comment>
    <requestid>861707</requestid>
  </revision>
  <revision rev="7" vrev="1">
    <srcmd5>a037ba664bb66f5e1735521aa696d618</srcmd5>
    <version>0.17.2</version>
    <time>1621269904</time>
    <user>dimstar_suse</user>
    <comment>- Update to version 0.17.2:
  * Upgrade fanal dependency (#976)
  * docs: mention upx binaries (#974)
  * Upgrade alpine to fix git and libcurl vulnerabilities in trivy docker image scan (#971)
  * fix(fs): skip dirs (#969)
  * chore(ci): replace GITHUB_TOKEN with ORG_GITHUB_TOKEN (#965)
  * chore(ci): clone trivy-repo after releasing binaries (#963)
  * docs: add golang support (#962)
  * fix(table): skip zero vulnerabilities on java (#961)
  * chore(ci): create a release discussion (#959)
  * feat(go): support binary scan (#948)
  * feat(java): support GitLab Advisory Database (#917)
  * feat: show help message when the context's deadline passes (#955)
  * chore(mkdocs): replace github token (#954)
  * Update SARIF report template (#935)
  * Update install docs to make commands consistent (#933)
  * Docker multi-platform image build with `buildx`, using Goreleaser (#915)
  * Fix JUnit template for AWS CodeBuild compatibility (#904)
  * break(cli): use StringSliceFlag for skip-dirs/files (#916)
  * docs: add white logo (#914)
  * add package name in ruleID (#913)
  * feat: gh-action for stale issues (#908)
  * chore(triage): add lifecycle/active label (#909)
  * feat: publish helm repository (#888)
  * Fix Documentation Typo (#901)
  * docs: migrate README to MkDocs (#884)
  * refactor(internal): export internal packages (#887)
  * feat: support plugins (#878)
  * chore(ci): deploy dev docs only for the main branch (#882)
  * add MkDocs implementation (#870)</comment>
    <requestid>893510</requestid>
  </revision>
  <revision rev="8" vrev="1">
    <srcmd5>359f3eec11d24fd85af1af071c213117</srcmd5>
    <version>0.18.3</version>
    <time>1623098706</time>
    <user>dimstar_suse</user>
    <comment>- Update to version 0.18.3:
  * chore(ci): change to more granular tokens (#1014)
  * chore(ci): add Go scanning and update dependencies (#1001)
  * docs: Add HIGH severity to Trivy command in GitLab CI example to match comment (#1013)
  * fix(image): disable go.sum scanning (#1007)
  * fix(gomod): handle go.sum with an empty line (#1006)
  * feat: prepare for config scanning (#1005)
  * Clarify that dev dependencies are excluded (#986)
  * Include target value in Sarif template ruleID (#991)
  * chore(mkdocs): allow workflow_dispatch (#989)
  * fix(vuln) unique vulnerabilities from different data sources (#984)
  * feat(go): added support of gomod analyzer (#978)</comment>
    <requestid>898184</requestid>
  </revision>
  <revision rev="9" vrev="2">
    <srcmd5>1eadb782378b60a83b0df35a68bd32ae</srcmd5>
    <version>0.18.3</version>
    <time>1624136576</time>
    <user>dimstar_suse</user>
    <comment>Automatic submission by obs-autosubmit</comment>
    <requestid>900585</requestid>
  </revision>
  <revision rev="10" vrev="1">
    <srcmd5>7b9764506f3f4363cac4cc0f60c283ed</srcmd5>
    <version>0.20.2</version>
    <time>1636577208</time>
    <user>dimstar_suse</user>
    <comment>- Update to version 0.20.2:
  * docs: update builtin.md (#1335)
  * chore: fix issues with Homebrew formula (#1329)
  * chore: bump GoReleaser to v0.183.0 (#1328)
  * docs: update iac.md for a typo (#1326)
  * docs: typo fix (#1308)
  * Add new networking API features to Ingress (#1262)
  * chore(release): bump up GoReleaser to v0.182.1 (#1299)
  * fix(yarn): support quoted version (#1298)
  * feat(custom-forward): Forward the extended advisory data (#1247)
  * feat(javascript) : Initialize npm driver for javascript packages (#1289)
  * fix(cli): fix incorrect comparision of DB metadata type. (#1286)
  * docs: add footer to readme (#1281)
  * feat(report): add package path (#1274)
  * feat(command): add rootfs command (#1271)
  * fix: update fanal (#1272)
  * feat(commands): remove deprecated options (#1270)
  * Aggregate jar result for table (#1269)
  * BREAKING(report): migrate to new json schema (#1265)
  * feat: improve --skip-dirs and --skip-files (#1249)
  * fix(gobinary): skip large files (#1259)
  * Disable library analyzer for OS only scan type (#1191)
  * chore: update trivy version (#1252)
  * refactor: move from io/ioutil to io and os package (#1245)
  * fix: brew test command (#1253)
  * fix:added layer info in packages (#1248)
  * fix(go/binary): improve debug messages (#1244)
  * Update db.go (#1199)
  * fix(deps): fix CVE-2021-32760 for github.com/containerd/containerd (#1243)
  * feat(debian): support the versions that reached EOL (#1237)</comment>
    <requestid>930653</requestid>
  </revision>
  <revision rev="11" vrev="1">
    <srcmd5>45d908ae577b9744050e032c73afb5d2</srcmd5>
    <version>0.21.1</version>
    <time>1638740780</time>
    <user>dimstar_suse</user>
    <comment>- Update to version 0.21.1:
  * chore(mod): tidy (#1415)
  * fix(rpc): fix nil layer transmit (#1410)
  * Lang advisory order (#1409)
  * chore: add support for s390x arch (#1304)
  * fix(chart): ingress helm manifest-update trivy image (#1323)
  * docs: Add comparison for cfsec (#1388)
  * remove: delete unused functions in utils package (#1379)
  * fix(sarif): fix validation errors (#1376)
  * docs: add Bitbucket Pipelines (#1374)
  * docs: add community integrations (#1361)
  * Use a stable SARIF identifier (#1230)
  * fix(python): fix parsing of requirements.txt with hash checking mode available in pip since version 8.0
  * feat(iac): Add line information (#1366)
  * feat(cloudformation): Adding support for cfsec IaC scanning (#1360)
  * chore: send debug and info logs to stdout in install.sh, not stderr. (#1264)
  * Update containerd to v1.5.7 and docker-cli to v20.10.9 (#1356)
  * chore: update SBOM generation (#1349)</comment>
    <requestid>935778</requestid>
  </revision>
  <revision rev="12" vrev="1">
    <srcmd5>25331e648d633623b6514e96d12dfaba</srcmd5>
    <version>0.21.3</version>
    <time>1640108441</time>
    <user>dimstar_suse</user>
    <comment>- Update to version 0.21.3:
  * fix(docs): typo (#1488)
  * feat(plugin): Add option to update plugin (#1462)
  * fix: fixed skipFiles/skipDirs flags for relative path (#1482)
  * feat (plugin): add list and info command for plugin (#1452)
  * fix: set up a vulnerability severity (#1458)
  * chore: add arm64 deb package (#1480)
  * Link to trivy tutorial on Semaphore (#1449)
  * refactor(helm): externalize env vars to configMap (#1345)
  * docs: provide more information on scanning Google's GCR (#1426)
  * docs(misconfiguration): added instruction for misconfiguration detection (#1428)
  * Update git-repository.md (#1430)
  * fix(hooks): exclude unrelated lib types from system files filtering (#1431)
  * chore: run `go fmt` (#1429)
  * fix(sarif): change `help` field in the sarif template. (#1423)
  * Update fanal with cfsec version update (#1425)
  * Replace deprecated option in goreleaser (#1406)
  * feat(alpine): support 3.15 (#1422)
  * chore: test the helm chart in the PR and used the commit hash (#1414)
  * chore(deps): bump alpine from 3.14 to 3.15.0 (#1417)
  * chore(release): add ubuntu older versions to deploy script (#1416)</comment>
    <requestid>941786</requestid>
  </revision>
  <revision rev="13" vrev="1">
    <srcmd5>0604ee904bb62a2bb78be6f4d8dca4ac</srcmd5>
    <version>0.22.0</version>
    <time>1640693827</time>
    <user>dimstar_suse</user>
    <comment>Update to version 0.22.0:
  * fix(java/pom): ignore unsupported requirements (#1514)
  * feat(cli): warning for root command (#1516)
  * BREAKING: disable JAR detection in fs/repo scanning (#1512)
  * feat(scan): support --offline-scan option (#1511)
  * fix: improve memory usage (#1509)
  * feat(java): support pom.xml (#1501)
  * docs: fixing rust link to security advisory (#1504)
  * Add missing IacMetdata (#1505)
  * feat(jar): add file path (#1498)
  * feat(rpm): support NDB (#1497)
  * feat: added misconfiguration field for html.tpl (#1444)</comment>
    <requestid>942895</requestid>
  </revision>
  <revision rev="14" vrev="2">
    <srcmd5>4e8b7ae3dc0c79c7798845071418baf7</srcmd5>
    <version>0.22.0</version>
    <time>1641480668</time>
    <user>dimstar_suse</user>
    <comment>- Update to version 0.22.0 (jsc#SLE-18339):</comment>
    <requestid>944093</requestid>
  </revision>
  <revision rev="15" vrev="1">
    <srcmd5>945ccd2aa0538f9f7f93579ae9b3cb69</srcmd5>
    <version>0.23.0</version>
    <time>1643731187</time>
    <user>dimstar_suse</user>
    <comment></comment>
    <requestid>950418</requestid>
  </revision>
  <revision rev="16" vrev="1">
    <srcmd5>ac590a525e78fe870dc4a5ecf4c9bec2</srcmd5>
    <version>0.24.2</version>
    <time>1646349574</time>
    <user>dimstar_suse</user>
    <comment></comment>
    <requestid>959290</requestid>
  </revision>
</revisionlist>