From 14fa077839f34155608c07b21035c38ce79c883b Mon Sep 17 00:00:00 2001 From: Scott Luu Date: Thu, 13 Nov 2025 09:52:48 -0500 Subject: [PATCH 1/4] BST-17782: bump scanner composition Signed-off-by: Scott Luu --- scanners/boostsecurityio/composition/module.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/scanners/boostsecurityio/composition/module.yaml b/scanners/boostsecurityio/composition/module.yaml index 4c832c73..3c4b94e9 100644 --- a/scanners/boostsecurityio/composition/module.yaml +++ b/scanners/boostsecurityio/composition/module.yaml @@ -17,7 +17,7 @@ steps: format: metadata command: docker: - image: public.ecr.aws/boostsecurityio/boost-scanner-composition:38a1ebd@sha256:b71b2c0117caeb145566cc1abcd7ce14102dc26ca130b4bee65e9ad641fc1b1d + image: public.ecr.aws/boostsecurityio/boost-scanner-composition:87e7e6d@sha256:691bd2b70a4634a1f778c79aab9c37ac894737ceb694c3364181e2987b57ae49 command: scan workdir: /src environment: From a405fc23d786a46d007628c5ceb9de17d0376d33 Mon Sep 17 00:00:00 2001 From: Scott Luu Date: Thu, 13 Nov 2025 13:27:01 -0500 Subject: [PATCH 2/4] update sci also Signed-off-by: Scott Luu --- scanners/boostsecurityio/supply-chain-inventory/module.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/scanners/boostsecurityio/supply-chain-inventory/module.yaml b/scanners/boostsecurityio/supply-chain-inventory/module.yaml index 57103dbc..b101b8a3 100644 --- a/scanners/boostsecurityio/supply-chain-inventory/module.yaml +++ b/scanners/boostsecurityio/supply-chain-inventory/module.yaml @@ -16,7 +16,7 @@ steps: format: supply_chain_inventory command: docker: - image: public.ecr.aws/boostsecurityio/boost-scanner-composition:38a1ebd@sha256:b71b2c0117caeb145566cc1abcd7ce14102dc26ca130b4bee65e9ad641fc1b1d + image: public.ecr.aws/boostsecurityio/boost-scanner-composition:87e7e6d@sha256:691bd2b70a4634a1f778c79aab9c37ac894737ceb694c3364181e2987b57ae49 command: inventory workdir: /src environment: From 437567c657c9be63c47508aa4cbccde4df7faee2 Mon Sep 17 00:00:00 2001 From: Scott Luu Date: Fri, 14 Nov 2025 15:53:29 -0500 Subject: [PATCH 3/4] bump composition version Signed-off-by: Scott Luu --- scanners/boostsecurityio/composition/module.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/scanners/boostsecurityio/composition/module.yaml b/scanners/boostsecurityio/composition/module.yaml index 3c4b94e9..307d4937 100644 --- a/scanners/boostsecurityio/composition/module.yaml +++ b/scanners/boostsecurityio/composition/module.yaml @@ -17,7 +17,7 @@ steps: format: metadata command: docker: - image: public.ecr.aws/boostsecurityio/boost-scanner-composition:87e7e6d@sha256:691bd2b70a4634a1f778c79aab9c37ac894737ceb694c3364181e2987b57ae49 + image: public.ecr.aws/boostsecurityio/boost-scanner-composition:0b5a854@sha256:90b4d286e983db1b63125e52bd463cb85466edc0846f03ea7657678e5c6e7d3c command: scan workdir: /src environment: From 1ae44b354b2c8127fc0f0b260a5ea8e8c9712acd Mon Sep 17 00:00:00 2001 From: Scott Luu Date: Fri, 14 Nov 2025 15:53:48 -0500 Subject: [PATCH 4/4] bump composition version Signed-off-by: Scott Luu --- scanners/boostsecurityio/supply-chain-inventory/module.yaml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/scanners/boostsecurityio/supply-chain-inventory/module.yaml b/scanners/boostsecurityio/supply-chain-inventory/module.yaml index b101b8a3..631ea730 100644 --- a/scanners/boostsecurityio/supply-chain-inventory/module.yaml +++ b/scanners/boostsecurityio/supply-chain-inventory/module.yaml @@ -16,7 +16,7 @@ steps: format: supply_chain_inventory command: docker: - image: public.ecr.aws/boostsecurityio/boost-scanner-composition:87e7e6d@sha256:691bd2b70a4634a1f778c79aab9c37ac894737ceb694c3364181e2987b57ae49 + image: public.ecr.aws/boostsecurityio/boost-scanner-composition:0b5a854@sha256:90b4d286e983db1b63125e52bd463cb85466edc0846f03ea7657678e5c6e7d3c command: inventory workdir: /src environment: