Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

rabbitmq-messaging-topology-operator/1.15.0 package update #30314

Merged
merged 1 commit into from
Oct 8, 2024

Conversation

octo-sts[bot]
Copy link
Contributor

@octo-sts octo-sts bot commented Oct 8, 2024

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com>
@octo-sts octo-sts bot added request-version-update request for a newer version of a package automated pr P1 This label indicates our scanning found High, Medium or Low CVEs for these packages. labels Oct 8, 2024
Copy link
Contributor

github-actions bot commented Oct 8, 2024

Package rabbitmq-messaging-topology-operator-compat: Click to expand/collapse

Package rabbitmq-messaging-topology-operator-compat:
Unchanged

Package rabbitmq-messaging-topology-operator: Click to expand/collapse

Package rabbitmq-messaging-topology-operator:
Modified: /usr/bin/manager

malcontent found differences: Click to expand/collapse

Deleted: rabbitmq-messaging-topology-operator/var/lib/db/sbom/rabbitmq-messaging-topology-operator-1.14.2-r3.spdx.json [⚠️ MEDIUM]

RISK KEY DESCRIPTION EVIDENCE
-MEDIUM net/download download files downloadLocation
-LOW ref/site/url contains embedded HTTPS URLs https://spdx.org/spdxdocs/chainguard/melange/a68d9d7e9c7904bdbdfea5b4d24d

Moved: rabbitmq-messaging-topology-operator-compat/var/lib/db/sbom/rabbitmq-messaging-topology-operator-compat-1.14.2-r3.spdx.json -> /tmp/wolfictl-apk-3057567002/rabbitmq-messaging-topology-operator-compat/var/lib/db/sbom/rabbitmq-messaging-topology-operator-compat-1.15.0-r0.spdx.json (similarity: 0.99)

Moved: rabbitmq-messaging-topology-operator-compat/var/lib/db/sbom/rabbitmq-messaging-topology-operator-compat-1.14.2-r3.spdx.json -> /tmp/wolfictl-apk-3057567002/rabbitmq-messaging-topology-operator/var/lib/db/sbom/rabbitmq-messaging-topology-operator-1.15.0-r0.spdx.json (similarity: 0.92)

@octo-sts octo-sts bot added bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. auto-approver-bot/approve labels Oct 8, 2024
@octo-sts octo-sts bot enabled auto-merge (squash) October 8, 2024 18:01
@octo-sts octo-sts bot merged commit 6666eb5 into main Oct 8, 2024
15 checks passed
@octo-sts octo-sts bot deleted the wolfictl-f5eea666-06d6-4393-b447-eb4df53e4c95 branch October 8, 2024 18:04
gdonval pushed a commit to gdonval/wolfi-os that referenced this pull request Oct 9, 2024
…#30314)

<p align="center">
<img
src="https://raw.githubusercontent.com/wolfi-dev/.github/b535a42419ce0edb3c144c0edcff55a62b8ec1f8/profile/wolfi-logo-light-mode.svg"
/>
</p>

Signed-off-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com>
Co-authored-by: wolfi-bot <121097084+wolfi-bot@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
auto-approver-bot/approve automated pr bincapz/pass bincapz/pass Bincapz (aka. malcontent) scan didn't detect any CRITICALs on the scanned packages. P1 This label indicates our scanning found High, Medium or Low CVEs for these packages. request-version-update request for a newer version of a package
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant