Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore(deps): update regex #117

Merged
merged 1 commit into from
Aug 14, 2023
Merged

Conversation

mend-for-github-com[bot]
Copy link
Contributor

This PR contains the following updates:

Package Update Change
DelineaXPM/dsv-cli patch v1.40.1 -> v1.40.5
anchore/grype minor v0.57.1 -> v0.65.1
anchore/quill minor v0.2.0 -> v0.4.0
anchore/syft minor v0.73.0 -> v0.87.0
aquaproj/aqua-registry minor v3.138.0 -> v3.162.0
charmbracelet/glow patch v1.5.0 -> v1.5.1
charmbracelet/gum minor v0.9.0 -> v0.11.0
charmbracelet/vhs minor v0.3.0 -> v0.6.0
direnv/direnv patch v2.32.2 -> v2.32.3
goreleaser/goreleaser minor v1.15.2 -> v1.20.0
gotestyourself/gotestsum minor v1.9.0 -> v1.10.1
magefile/mage minor v1.14.0 -> v1.15.0
mikefarah/yq minor v4.31.1 -> v4.35.1
miniscruff/changie minor v1.11.1 -> v1.12.0
mvdan/gofumpt minor v0.4.0 -> v0.5.0
sharkdp/hyperfine minor v1.15.0 -> v1.17.0

⚠ Dependency Lookup Warnings ⚠

Warnings were logged while processing this repo. Please check the Dependency Dashboard for more information.


Release Notes

DelineaXPM/dsv-cli

v1.40.5

Compare Source

🐛 Bug Fix
  • Windows cli version update check was looking for a binary with windows in the name, while the actual artifact is win.

v1.40.4

Compare Source

🎉 Feature
  • dsv pool list: new --limit, -l, --cursor flags. See dsv pool list --help for more details.
Related
Contributors

v1.40.3

Compare Source

🐛 Bug Fix
  • Fix the format of links to pre-built binaries.
Contributors

v1.40.2

Compare Source

🔨 Refactor
  • Allow defining command handlers which could return an error instead of exit code.
  • Move store package to internal/store. Do not use custom ApiError in the store package.
  • Reduce number of API calls in E2E tests by using CLI configuration profile instead of requesting a new token on each CLI run.
🐛 Bug Fix
Contributors
anchore/grype

v0.65.1

Compare Source

v0.65.1 (2023-08-04)

Full Changelog

Bug Fixes
  • Grype cannot read SPDX documents generated by SPDX-maven-plugin [Issue #​1306]

v0.65.0

Compare Source

Changelog

v0.65.0 (2023-07-31)

Full Changelog

Added Features
Bug Fixes
Additional Changes

v0.64.2

Compare Source

Changelog

v0.64.2 (2023-07-20)

Full Changelog

Bug Fixes

v0.64.1

Compare Source

Changelog

v0.64.1 (2023-07-17)

Full Changelog

Bug Fixes
Additional Changes

v0.64.0

Compare Source

Changelog

v0.64.0 (2023-07-13)

Full Changelog

Added Features
Bug Fixes
  • Correctly detect format of CycloneDX XML SBOM with no components [Issue #​1005]
  • Fix vulnerability summary counts to be less confusing. [Issue #​1360]
Additional Changes

v0.63.1

Compare Source

Changelog

v0.63.1 (2023-06-30)

Full Changelog

Bug Fixes

v0.63.0

Compare Source

Changelog

v0.63.0 (2023-06-21)

Full Changelog

Added Features
  • Always include the specific package name and version used in the vulnerability search in the matchDetails section of the output [PR #​1339] [westonsteimel]
  • Expose Go template file that produces the table report [Issue #​629] [PR #​1343] [jneate]
  • Add a folder for community Go templates (see templates/README.md for more details) [Issue #​1316]
Breaking Changes

v0.62.3

Compare Source

Changelog

v0.62.3 (2023-06-05)

Full Changelog

Bug Fixes

v0.62.2

Compare Source

Changelog

v0.62.2 (2023-05-26)

Full Changelog

v0.62.1

Compare Source

Changelog

v0.62.1 (2023-05-24)

Full Changelog

Bug Fixes

  • Updated syft to v0.82.0 to address license parsing logic that may result in a panic [PR #​1313]

v0.62.0

Compare Source

Changelog

v0.62.0 (2023-05-22)

Full Changelog

Added Features
Bug Fixes
Additional Changes

v0.61.1

Compare Source

Changelog

v0.61.1 (2023-04-21)

Full Changelog

Bug Fixes
  • ❔ Parsing dpkg status: extracting key-value from line: usr/lib/os-release err: cannot parse field [Issue #​1195]
  • Grype suggesting to upgrade to a version already used. [Issue #​1209]
Additional Changes

v0.61.0

Compare Source

Changelog

v0.61.0 (2023-04-04)

Full Changelog

Added Features
Additional Changes

v0.60.0

Compare Source

Changelog

v0.60.0 (2023-03-28)

Full Changelog

Added Features
Additional Changes

v0.59.1

Compare Source

Changelog

v0.59.1 (2023-03-09)

Full Changelog

Bug Fixes

v0.59.0

Compare Source

Changelog

v0.59.0 (2023-03-03)

Full Changelog

Added Features
Additional Changes

v0.58.0

Compare Source

Changelog

v0.58.0 (2023-03-02)

Full Changelog

Security Fixes
Added Features
Bug Fixes
Additional Changes
anchore/quill

v0.4.0

Compare Source

Changelog

v0.4.0 (2023-04-12)

Full Changelog

Added Features
Bug Fixes
Additional Changes
anchore/syft

v0.87.0

Compare Source

v0.87.0 (2023-08-14)

Full Changelog

Added Features
Bug Fixes

v0.86.1

Compare Source

Changelog

v0.86.1 (2023-07-31)

Full Changelog

Bug Fixes
  • Source requires default image name as user input for unparsable reference [PR #​1979] [kzantow]

v0.86.0

Compare Source

Changelog

v0.86.0 (2023-07-31)

Full Changelog

Added Features
Bug Fixes
Breaking Changes

v0.85.0

Compare Source

Changelog

v0.85.0 (2023-07-12)

Full Changelog

Added Features
Bug Fixes
Breaking Changes
Additional Changes

v0.84.1

Compare Source

Changelog

v0.84.1 (2023-06-29)

Full Changelog

Bug Fixes
Additional Changes

v0.84.0

Compare Source

Changelog

v0.84.0 (2023-06-20)

Full Changelog

Breaking Changes
Additional Changes

v0.83.1

Compare Source

Changelog

v0.83.1 (2023-06-14)

Full Changelog

Bug Fixes

v0.83.0

Compare Source

Changelog

v0.83.0 (2023-06-05)

Full Changelog

Added Features
  • Add new '--source-version' and '--source-name' options to set the name and version of the target being analyzed for reference in resulting syft-json format SBOMs (more formats will support these flags soon). [Issue #​1399] [PR #​1859] [kzantow]
  • Add scope to POM properties [PR #​1779] [jneate]
  • Accept main.version ldflags even without vcs [PR #​1855] [deitch]
Bug Fixes
Deprecated Features
Additional Changes

v0.82.0

Compare Source

Changelog

v0.82.0 (2023-05-23)

Full Changelog

Added Features
Bug Fixes
  • Fix a problem in the license parsing logic that may result in a panic [PR #​1839]
  • Return all relevant error messages if an image retrieval fails when a scheme is specified [PR #​1801] [FrimIdan]
  • Fix a problem with PNPM scanning where v6 lockfiles might result in duplicated packages [Issue #​1762] [PR #​1778] [kzantow]

v0.81.0

Compare Source

Changelog

v0.81.0 (2023-05-22)

Full Changelog

Added Features
Bug Fixes
Additional Changes

v0.80.0

Compare Source

Changelog

v0.80.0 (2023-05-05)

Full Changelog

Added Features
Bug Fixes
Deprecated Features

v0.79.0

Compare Source

Changelog

v0.79.0 (2023-04-21)

Full Changelog

Added Features
Bug Fixes
Additional Changes

v0.78.0

Compare Source

Changelog

v0.78.0 (2023-04-17)

Full Changelog

Added Features
Bug Fixes

v0.77.0

Compare Source

Changelog

v0.77.0 (2023-04-11)

Full Changelog

Added Features

v0.76.1

Compare Source

Changelog

v0.76.1 (2023-04-05)

Full Changelog

Added Features

v0.76.0

Compare Source

Changelog

v0.76.0 (2023-03-31)

Full Changelog

Added Features
Bug Fixes
Additional Changes

v0.75.0

Compare Source

Changelog

v0.75.0 (2023-03-13)

Full Changelog

Added Features
Bug Fixes

v0.74.1

Compare Source

Changelog

v0.74.1 (2023-03-09)

Full Changelog

Bug Fixes

v0.74.0

Compare Source

Changelog

(v0.74.0) (2023-03-02)

Full Changelog

Added Features
Bug Fixes
aquaproj/aqua-registry

v3.162.0

Compare Source

Issues | Pull Requests | aquaproj/aqua-registry@v3.161.0...v3.162.0

🎉 New Packages

#​11839 Madh93/tpm: A package manager for Terraform providers @​ponkio-o

v3.161.0

Compare Source

Issues | Pull Requests | aquaproj/aqua-registry@v3.160.0...v3.161.0

🎉 New Packages

#​11838 gopinath-langote/1build: Frictionless way of managing project-specific commands

v3.160.0

Compare Source

Issues | Pull Requests | aquaproj/aqua-registry@v3.159.0...v3.160.0

🎉 New Packages

#​11817 abice/go-enum: An enum generator for go

Fixes

#​11837 ysugimoto/falco: Use tar.gz from falco v0.20.2 @​ponkio-o

v3.159.0

Compare Source

Issues | Pull Requests | aquaproj/aqua-registry@v3.158.0...v3.159.0

🎉 New Packages

#​11807 kubecfg/kubecfg: A tool for managing complex enterprise Kubernetes environments as code
#​11808 loov/goda: Go Dependency Analysis toolkit

Fixes

#​11806 solidiquis/erdtree: Follow up changes of erdtree v2.0.0

https://github.com/solidiquis/erdtree/releases/tag/v2.0.0

Perhaps the most important change to note is that the compiled binary has been renamed from et to erd in order to address the following issue
regarding name collisions with other programs

v3.158.1

Compare Source

Issues | Pull Requests | aquaproj/aqua-registry@v3.158.0...v3.158.1

Fixes

#​11790 Follow up changes of cli/cli v2.28.0 @​kyontan

GitHub's CLI (cli/cli) changed format for macOS to zip (from tar.gz) since v2.28.0

See https://github.com/cli/cli/releases/tag/v2.28.0 for details.

v3.158.0

Compare Source

Issues | Pull Requests | aquaproj/aqua-registry@v3.157.0...v3.158.0

🎉 New Packages

#​11692 hexdigest/gowrap: GoWrap is a command line tool for generating decorators for Go interfaces
#​11691 knqyf263/go-plugin: Go Plugin System over WebAssembly
#​11667 wasmerio/wasmer: The leading WebAssembly Runtime supporting WASI and Emscripten

v3.157.0

Compare Source

Issues | Pull Requests | aquaproj/aqua-registry@v3.156.0...v3.157.0

🎉 New Packages

#​11604 WebAssembly/binaryen: Optimizer and compiler/toolchain library for WebAssembly @​knqyf263 🎉 New Contributor


Configuration

📅 Schedule: Branch creation - "every weekday" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

@mend-for-github-com mend-for-github-com bot merged commit 9957ee4 into main Aug 14, 2023
9 of 13 checks passed
@mend-for-github-com mend-for-github-com bot deleted the whitesource-remediate/regex branch August 14, 2023 18:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Projects
None yet
Development

Successfully merging this pull request may close these issues.

None yet

0 participants