chore(deps): update aquasec/trivy docker tag to v0.69.3 (alauda-v0.33.1) - abandoned#43
Conversation
🤖 AI Code Review
SummaryThis PR is a straightforward dependency update that upgrades the Trivy Docker image version from 0.62.1 to 0.69.3 across both Dockerfile and Dockerfile.dev. Changes follow proper conventions by updating the version via ARG at the top of each file. The release notes indicate this is a minor version upgrade with bug fixes and new features, including no breaking changes that would affect this scanner. Review Statistics
Critical Issues
None identified. Warnings
None identified. Suggestions
Positive Feedback
ℹ️ About this reviewThis review was automatically generated using the
|
Autoclosing SkippedThis PR has been flagged for autoclosing. However, it is being skipped due to the branch being already modified. Please close/delete it manually or report a bug if you think this is in error. |
|
🚨 Stale Pull Request Warning This pull request has been inactive for 31 days. Automated Actions Schedule:
To keep this PR active:
Protected branches (won't be deleted): This is an automated message. Reply to this comment to reset the inactivity timer. |
This PR contains the following updates:
0.62.1->0.69.3Release Notes
aquasecurity/trivy (aquasec/trivy)
v0.69.3Compare Source
Changelog
6fb20c8release: v0.69.3 [release/v0.69] (#10293)dabefecfix(deps): bump github.com/go-git/go-git/v5 from 5.16.4 to 5.16.5 [backport: release/v0.69] (#10291)v0.69.2Compare Source
Changelog
cfa322erelease: v0.69.2 [release/v0.69] (#10266)86debcefix(deps): bump go.opentelemetry.io/otel/sdk from 1.39.0 to 1.40.0 [backport: release/v0.69] (#10267)cf3d4cdfix(deps): bump github.com/cloudflare/circl from 1.6.1 to 1.6.3 [backport: release/v0.69] (#10264)6dfd3b0ci: remove apidiff workflowv0.69.1Compare Source
v0.69.0Compare Source
⚠ BREAKING CHANGES
Features
package-lock.jsonfile (#9983) (b64d5ad)Bug Fixes
Performance Improvements
Code Refactoring
v0.68.2Compare Source
v0.68.1Compare Source
Bug Fixes
v0.67.2Compare Source
v0.67.1Compare Source
v0.67.0Compare Source
Features
Bug Fixes
BuildableClientinstead ofxhttp.Client(#9436) (fa6f1bf)Package.IDfor pnpm packages (#9330) (4517e8c)nugetpackage names in lower case (#9456) (1ff9ac7)v0.66.0Compare Source
Features
Bug Fixes
package.jsonfile (#9349) (03d039f)filecomponent type ofCycloneDX(#9372) (aa7cf43)v0.65.0Compare Source
Features
--serverflag (#9270) (ed4640e)Bug Fixes
filepathwhen removing duplicate packages (#9142) (4d10a81)GFDL-NIV-1.1andGFDL-NIV-1.2into Trivy mapping (#9116) (a692f29)LaxSplitLicenses(#9232) (b4193d0)*.listto*.md5sumsfiles fordpkg(#9131) (f224de3)root.iopackages (#9117) (c2ddd44)for_eachon a map returns a resource for every key (#9156) (153318f)v0.64.1Compare Source
v0.64.0Compare Source
Features
Bug Fixes
packagesarray ofbun.lockfile (#8998) (875ec3a)tableformat (#8549) (87fda76)v0.63.0Compare Source
Features
Minimum Trivy Version(#8880) (3b2a397)Bug Fixes
--skip-dirand--skip-filesflags forsbomcommand (#8886) (69a5fa1)--complianceflag (#8881) (35e8889)Relationshipfield support (#8939) (22f040f)rpc(#8872) (38f17c9)lo.IsNilto checkVEXfrom OCI artifact (#8858) (e97af98)Performance Improvements
Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Renovate Bot.