diff --git a/package.json b/package.json index 20fc21712..14f433c60 100644 --- a/package.json +++ b/package.json @@ -1,6 +1,6 @@ { "name": "socket", - "version": "1.1.35", + "version": "1.1.36", "description": "CLI for Socket.dev", "homepage": "https://github.com/SocketDev/socket-cli", "license": "MIT AND OFL-1.1", diff --git a/src/commands/fix/coana-fix.mts b/src/commands/fix/coana-fix.mts index e72cc370b..a566052ae 100644 --- a/src/commands/fix/coana-fix.mts +++ b/src/commands/fix/coana-fix.mts @@ -155,7 +155,7 @@ export async function coanaFix( p => path.basename(p).toLowerCase() !== DOT_SOCKET_DOT_FACTS_JSON, ) const uploadCResult = await handleApiCall( - sockSdk.uploadManifestFiles(orgSlug, filepathsToUpload), + sockSdk.uploadManifestFiles(orgSlug, filepathsToUpload, cwd), { description: 'upload manifests', spinner, diff --git a/src/commands/scan/perform-reachability-analysis.mts b/src/commands/scan/perform-reachability-analysis.mts index b1833f121..48c745aa9 100644 --- a/src/commands/scan/perform-reachability-analysis.mts +++ b/src/commands/scan/perform-reachability-analysis.mts @@ -106,8 +106,13 @@ export async function performReachabilityAnalysis( spinner?.start('Uploading manifests for reachability analysis...') + // Ensure uploaded manifest files are relative to analysis target as coana resolves SBOM manifest files relative to this path const uploadCResult = await handleApiCall( - sockSdk.uploadManifestFiles(orgSlug, filepathsToUpload), + sockSdk.uploadManifestFiles( + orgSlug, + filepathsToUpload, + path.resolve(cwd, analysisTarget), + ), { description: 'upload manifests', spinner,