Commit Graph

  • 1b9c4962a5 release: v0.70.0 [main] release-please--branches--main Aqua Security automated builds 2026-01-30 15:37:21 +02:00
  • 9a3e0a845d fix(java): Disable overwriting exclusions (#10088) main Cameron 2026-01-30 13:15:38 +00:00
  • 65e151fab0 refactor(rust): use txtar format for cargo analyzer test data (#10104) Teppei Fukuda 2026-01-30 16:13:18 +04:00
  • e24415cfa4 chore(deps): bump the common group across 1 directory with 26 updates dependabot/go_modules/common-967743213d dependabot[bot] 2026-01-30 11:26:51 +00:00
  • 1a72b326bb feat(python): add pylock.toml (PEP 751) parser (#9632) Ashwani Kumar Kamal 2026-01-30 16:31:47 +05:30
  • cc64eebbd0 chore(deps): bump the aws group across 1 directory with 6 updates (#10068) dependabot[bot] 2026-01-30 14:57:22 +04:00
  • b9a8d2d80a fix(server): exclude JavaDB and CheckBundle from /version endpoint (#10100) Teppei Fukuda 2026-01-30 14:48:49 +04:00
  • 0c6d93794b ci(helm): bump Trivy version to 0.69.0 for Trivy Helm Chart 0.21.0 ci/helm-chart/bump-trivy-to-0.69.0 GitHub Actions 2026-01-30 10:28:06 +00:00
  • 475eef069b Deployed 8fb9191a0 to v0.69 with MkDocs 1.6.1 and mike 2.1.3 gh-pages knqyf263 2026-01-30 09:43:12 +00:00
  • 8fb9191a07 release: v0.69.0 [main] (#9886) v0.69.0 release/v0.69 Aqua Security automated builds 2026-01-30 11:18:25 +02:00
  • 8928852979 Deployed ba9feb66b to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2026-01-30 08:24:52 +00:00
  • ba9feb66bf chore: bump trivy-checks to v2 (#9875) Nikita Pivkin 2026-01-30 14:02:58 +06:00
  • f00f8de637 chore(deps): bump github.com/theupdateframework/go-tuf/v2 from 2.3.1 to 2.4.1 (#10091) dependabot[bot] 2026-01-30 10:54:43 +04:00
  • 036c05b9a1 fix(repo): return a nil interface for gitAuth if missing (#10097) Riolku 2026-01-30 01:53:14 -05:00
  • 2933b01cd5 fix(java): correctly inherit properties from parent fields for pom.xml files (#9111) DmitriyLewen 2026-01-30 12:34:59 +06:00
  • 47d3103c50 fix(rust): implement version inheritance for Cargo mono repos (#10011) Czékus Máté 2026-01-29 11:51:02 +01:00
  • 9c4196478f Deployed 676709de4 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2026-01-29 07:04:50 +00:00
  • 676709de44 feat(activestate): add support ActiveState images (#10081) DmitriyLewen 2026-01-29 12:42:32 +06:00
  • 3ca4886a98 chore(deps): bump the docker group across 1 directory with 2 updates dependabot/go_modules/docker-db43af7bd4 dependabot[bot] 2026-01-26 16:13:34 +00:00
  • 65cde74574 Deployed f809066b0 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2026-01-24 04:22:18 +00:00
  • f809066b07 feat(vex): support per-repo tls configuration (#10030) Alessio Greggi 2026-01-24 04:59:56 +01:00
  • f97ac7e112 refactor: allow per-request transport options override (#10083) Teppei Fukuda 2026-01-23 14:23:33 +04:00
  • 8b46122869 chore(deps): bump github.com/sigstore/rekor from 1.4.3 to 1.5.0 (#10084) dependabot[bot] 2026-01-23 08:59:06 +00:00
  • 5d76153a23 chore(deps): bump github.com/sigstore/sigstore from 1.10.3 to 1.10.4 (#10085) dependabot[bot] 2026-01-23 12:58:25 +04:00
  • b9415a309c fix(java): correctly propagate repositories from upper POMs to dependencies (#10077) DmitriyLewen 2026-01-22 14:15:38 +06:00
  • 31c4780f72 feat(rocky): enable modular package vulnerability detection (#10069) Teppei Fukuda 2026-01-22 10:21:21 +04:00
  • 8025e90505 chore(deps): bump github.com/theupdateframework/go-tuf/v2 from 2.3.0 to 2.3.1 (#10079) dependabot[bot] 2026-01-22 09:50:01 +04:00
  • 486ce137f1 Deployed bf860cd55 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2026-01-20 10:01:48 +00:00
  • bf860cd552 docs: fix mistake in config file example for skip-dirs/skip-files flag (#10070) DmitriyLewen 2026-01-20 15:40:00 +06:00
  • fe7d20a31c feat(report): add Trivy version to JSON output (#10065) Teppei Fukuda 2026-01-20 13:36:33 +04:00
  • d2dc46ad60 fix(rust): add cargo workspace members glob support (#10032) Czékus Máté 2026-01-20 07:27:38 +01:00
  • 195382400f feat: add AnalyzedBy field to track which analyzer detected packages (#10059) Teppei Fukuda 2026-01-19 17:17:32 +04:00
  • e0833674c6 Deployed c233735b0 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2026-01-19 09:53:03 +00:00
  • c233735b02 fix: use canonical SPDX license IDs from embeded licenses.json (#10053) DmitriyLewen 2026-01-19 15:31:30 +06:00
  • f29abcf346 Deployed 5bb654074 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2026-01-19 06:05:01 +00:00
  • 5bb654074e docs: fix link to Docker Image Specification (#10057) Pierre Riteau 2026-01-19 06:43:59 +01:00
  • 34baef28ec feat(secret): add detection for Symfony default secret key (#9892) Murat Aslan 2026-01-16 12:53:18 +03:00
  • 56029517d6 refactor(misconf): move common logic to base value and simplify typed values (#9986) Nikita Pivkin 2026-01-16 11:03:13 +06:00
  • 809db46231 fix(java): add hash of GAV+root pom file path for pkgID for packages from pom.xml files (#9880) DmitriyLewen 2026-01-15 13:31:21 +06:00
  • 5fced3ae49 feat(misconf): use Terraform plan configuration to partially restore schema (#9623) Nikita Pivkin 2026-01-15 01:47:56 +06:00
  • b06ef6d270 feat(misconf): add action block to Terraform schema (#10035) Nikita Pivkin 2026-01-15 01:45:48 +06:00
  • ac061f8e88 fix(misconf): correct typos in block and attribute names (#9993) Nikita Pivkin 2026-01-15 01:45:31 +06:00
  • 8c23bfd871 test(misconf): simplify test values using *Test helpers (#9985) Nikita Pivkin 2026-01-15 01:44:33 +06:00
  • a0ecc8e926 fix(misconf): safely parse rotation_period in google_kms_crypto_key (#9980) Nikita Pivkin 2026-01-15 01:44:08 +06:00
  • 92d3465cee feat(misconf): support for ARM resources defined as an object (#9959) Nikita Pivkin 2026-01-15 01:43:44 +06:00
  • 37b5da895b feat(misconf): support for azurerm_*_web_app (#9944) Nikita Pivkin 2026-01-15 01:43:04 +06:00
  • 51f5412ba7 test: migrate private test helpers to export_test.go convention (#10043) DmitriyLewen 2026-01-14 15:32:42 +06:00
  • c3373b16c8 chore(deps): bump github.com/sigstore/cosign/v2 from 2.2.4 to 2.6.2 (#10048) dependabot[bot] 2026-01-14 13:03:21 +04:00
  • cdb28eeeb1 fix(secret): improve word boundary detection for Hugging Face tokens (#10046) DmitriyLewen 2026-01-14 13:32:29 +06:00
  • 3c0ab97e10 fix(go): use ldflags version for all pseudo-versions (#10037) DmitriyLewen 2026-01-13 16:45:18 +06:00
  • f0e23ead66 chore: switch to ID from AVDID in internal and user-facing fields (#9655) Nikita Pivkin 2026-01-13 13:58:01 +06:00
  • 6462dc8a58 refactor(misconf)!: use ID instead of AVDID for providers mapping (#9752) Nikita Pivkin 2026-01-13 13:57:18 +06:00
  • 4e06c3df5b fix: move enum into items for array-type fields in JSON Schema (#10039) Teppei Fukuda 2026-01-13 11:50:07 +04:00
  • e3689ea679 Deployed c5b8fef19 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2026-01-13 06:52:45 +00:00
  • c5b8fef197 docs: fix incorrect documentation URLs (#10038) DmitriyLewen 2026-01-13 12:31:59 +06:00
  • 07ff7885df feat(sbom): exclude PEP 770 SBOMs in .dist-info/sboms/ (#10033) Teppei Fukuda 2026-01-12 15:08:05 +04:00
  • 7f71b577a0 fix(docker): fix non-det scan results for images with embedded SBOM (#9866) Andre Oganesian 2026-01-12 05:10:07 -05:00
  • 60eb3f0a2f chore(deps): bump the github-actions group with 11 updates (#10001) dependabot[bot] 2026-01-05 15:02:40 +04:00
  • 08a3f92ab6 test: fix assertion after 2026 roll over (#10002) Christian Dupuis 2026-01-05 07:51:30 +01:00
  • b46cde0ebe fix(vuln): skip vulns detection for CentOS Stream family without scan failure (#9964) amitbhardwaj 2025-12-29 12:57:06 +05:30
  • 11dd3fac38 fix(license): normalize licenses for PostAnalyzers (#9941) DmitriyLewen 2025-12-29 12:27:04 +06:00
  • 24fbb4bd2c Deployed b64d5adc6 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2025-12-29 06:18:49 +00:00
  • b64d5adc6b feat(nodejs): parse licenses from package-lock.json file (#9983) DmitriyLewen 2025-12-29 11:57:06 +06:00
  • 5a5f5ac851 Deployed 43d4e5597 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2025-12-26 09:56:57 +00:00
  • 43d4e5597b chore: update reference links to Go Wiki (#9987) Nikita Pivkin 2025-12-26 15:35:37 +06:00
  • 93915dc97a refactor: add xslices.Map and replace lo.Map usages (#9984) Teppei Fukuda 2025-12-26 17:07:03 +09:00
  • 18acf4f71d fix(image): race condition in image artifact inspection (#9966) Pierre Guilleminot 2025-12-25 06:53:23 +01:00
  • 2044c1ccfb Deployed 4caf7312b to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2025-12-23 09:26:50 +00:00
  • 4caf7312b6 feat(flag): add JSON Schema for trivy.yaml configuration file (#9971) Teppei Fukuda 2025-12-23 18:05:17 +09:00
  • 517365caa3 refactor(debian): use txtar format for test data (#9957) Teppei Fukuda 2025-12-23 15:55:13 +09:00
  • 7a6594c745 chore(deps): bump golang.org/x/tools to v0.40.0 + gopls to v0.21.0 (#9973) DmitriyLewen 2025-12-22 18:20:10 +06:00
  • d3096e7617 feat(rootio): Update trivy db to support usage of Severity from root.io feed (#9930) urimils 2025-12-22 13:45:49 +02:00
  • 74819bf457 feat(vuln): skip vulnerability scanning for third-party packages in Debian/Ubuntu (#9932) Teppei Fukuda 2025-12-22 19:56:30 +09:00
  • dbed8b3a26 Deployed 56f93a1bc to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2025-12-22 09:20:37 +00:00
  • 56f93a1bcf docs: add info that --file-pattern flag doesn't disable default behaviuor (#9961) DmitriyLewen 2025-12-22 14:55:26 +06:00
  • 10a50a7429 perf(misconf): optimize string concatenation in azure scanner (#9969) Ankit Pramanik 2025-12-22 11:07:36 +05:30
  • 75c4dc0f45 chore: add client option to install script (#9962) Owen Rumney 2025-12-19 09:49:08 +00:00
  • 87772521b6 ci(helm): bump Trivy version to 0.68.2 for Trivy Helm Chart 0.20.1 (#9956) Aqua Security automated builds 2025-12-17 09:13:29 +02:00
  • 5eda0a4e85 chore(deps): bump github.com/quic-go/quic-go from 0.54.1 to 0.57.0 (#9952) dependabot[bot] 2025-12-17 10:07:48 +04:00
  • b777f34444 Deployed 0c40a8d4b to v0.68 with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2025-12-17 05:59:07 +00:00
  • 0c40a8d4b9 release: v0.68.2 [release/v0.68] (#9950) v0.68.2 release/v0.68 Aqua Security automated builds 2025-12-17 07:57:32 +02:00
  • db2894561d fix(deps): bump alpine from 3.22.1 to 3.23.0 [backport: release/v0.68] (#9949) Aqua Security automated builds 2025-12-16 14:03:04 +02:00
  • dc28f24280 ci: enable check-latest for setup-go [backport: release/v0.68] (#9946) Aqua Security automated builds 2025-12-16 10:58:17 +02:00
  • c2d75f5582 Deployed 718ec29ec to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2025-12-12 07:21:27 +00:00
  • 718ec29ec6 docs: update binary signature verification for sigstore bundles (#9929) Igor Adulyan 2025-12-11 22:56:26 -08:00
  • d528250a1d chore(deps): bump alpine from 3.22.1 to 3.23.0 (#9935) DmitriyLewen 2025-12-12 12:55:39 +06:00
  • f50b96a815 chore(alpine): add EOL date for alpine 3.23 (#9934) DmitriyLewen 2025-12-12 12:55:09 +06:00
  • d65b504cb2 feat(cloudformation): add support for Fn::ForEach (#9508) Nikita Pivkin 2025-12-12 00:53:03 +06:00
  • 1a901e5c75 ci: enable check-latest for setup-go (#9931) DmitriyLewen 2025-12-11 14:17:40 +06:00
  • effc1c0d4d feat(debian): detect third-party packages using maintainer list (#9917) Teppei Fukuda 2025-12-11 14:18:31 +09:00
  • 335cc993fa fix(vex): add CVE-2025-66564 as not_affected into Trivy VEX file (#9924) DmitriyLewen 2025-12-10 18:16:31 +06:00
  • d362b02b04 Deployed 18ecf7517 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2025-12-09 23:29:18 +00:00
  • 879e4fca12 feat(helm): add sslCertDir parameter (#9697) Kélian Saint-Bonnet 2025-12-09 23:15:31 +00:00
  • 18ecf75176 fix(misconf): respect .yml files when Helm charts are detected (#9912) Nikita Pivkin 2025-12-10 05:07:39 +06:00
  • 8f9e9c52b4 Deployed 56b59e8ab to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2025-12-09 13:04:51 +00:00
  • 56b59e8abb feat(php): add support for dev dependencies in Composer (#9910) Teppei Fukuda 2025-12-09 21:40:05 +09:00
  • f58826fb2a chore(deps): bump the common group across 1 directory with 9 updates (#9903) dependabot[bot] 2025-12-09 09:35:08 +04:00
  • 39273f34cc chore(deps): bump github.com/docker/cli from 29.0.3+incompatible to 29.1.1+incompatible in the docker group (#9859) dependabot[bot] 2025-12-08 14:25:32 +04:00
  • 9db123ccf8 fix: remove trailing tab in statefulset template (#9889) Thomas Hille 2025-12-08 07:17:59 +01:00
  • b84e9521c0 Deployed c2f82add3 to dev with MkDocs 1.6.1 and mike 2.1.3 knqyf263 2025-12-05 10:38:48 +00:00