Skip to content

Tags: aquasecurity/tfsec

Tags

v1.28.13

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
chore(deps): bump github.com/go-git/go-git/v5 from 5.11.0 to 5.13.0 (#…

…2164)

Bumps [github.com/go-git/go-git/v5](https://github.com/go-git/go-git) from 5.11.0 to 5.13.0.
- [Release notes](https://github.com/go-git/go-git/releases)
- [Commits](go-git/go-git@v5.11.0...v5.13.0)

---
updated-dependencies:
- dependency-name: github.com/go-git/go-git/v5
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

v1.28.12

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
CVE-2024-45337: Misuse of ServerConfig.PublicKeyCallback may cause au…

…thorization bypass (#2162)

* CVE-2024-45337: Misuse of ServerConfig.PublicKeyCallback may cause authorizaton bypass

* Fixing vulns

v1.28.11

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
chore(deps): bump github.com/open-policy-agent/opa (#2158)

Bumps [github.com/open-policy-agent/opa](https://github.com/open-policy-agent/opa) from 0.44.1-0.20220927105354-00e835a7cc15 to 0.68.0.
- [Release notes](https://github.com/open-policy-agent/opa/releases)
- [Changelog](https://github.com/open-policy-agent/opa/blob/main/CHANGELOG.md)
- [Commits](https://github.com/open-policy-agent/opa/commits/v0.68.0)

---
updated-dependencies:
- dependency-name: github.com/open-policy-agent/opa
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

v1.28.10

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
chore(deps): Pin goreleaser (#2149)

v1.28.9

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
chore(deps): Pin goreleaser (#2149)

v1.28.8

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
chore(deps): Fix goreleaser to use pinned version (#2148)

* chore(deps): Fix goreleaser to use pinned version

* fix typos

v1.28.7

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
chore(deps): bump google.golang.org/protobuf from 1.30.0 to 1.33.0 (#…

…2147)

Bumps google.golang.org/protobuf from 1.30.0 to 1.33.0.

---
updated-dependencies:
- dependency-name: google.golang.org/protobuf
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

v1.28.6

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
Bumped GoGetter due Critical Vulnerability (#2144)

v1.28.5

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature.
chore(deps): bump github.com/cloudflare/circl from 1.3.3 to 1.3.7 (#2134

)

Bumps [github.com/cloudflare/circl](https://github.com/cloudflare/circl) from 1.3.3 to 1.3.7.
- [Release notes](https://github.com/cloudflare/circl/releases)
- [Commits](cloudflare/circl@v1.3.3...v1.3.7)

---
updated-dependencies:
- dependency-name: github.com/cloudflare/circl
  dependency-type: indirect
...

Signed-off-by: dependabot[bot] <support@github.com>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>

v1.28.4

Verified

This commit was created on GitHub.com and signed with GitHub’s verified signature. The key has expired.
chore(ci): Update docs generation runner (#2101)