Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Aug 4, 2022

Bumps aquasecurity/trivy-action from 0.2.3 to 0.6.2.

Release notes

Sourced from aquasecurity/trivy-action's releases.

v0.6.2

What's Changed

Full Changelog: aquasecurity/trivy-action@0.6.1...0.6.2

v0.6.1

What's Changed

Full Changelog: aquasecurity/trivy-action@0.6.0...0.6.1

v0.6.0

What's Changed 🔥

Full Changelog: aquasecurity/trivy-action@0.5.1...0.6.0

v0.5.1

What's Changed

Full Changelog: aquasecurity/trivy-action@0.5.0...0.5.1

v0.5.0

What's Changed ✨

New Contributors ❤️

Full Changelog: aquasecurity/trivy-action@0.4.1...0.5.0

v0.4.1

What's Changed

New Contributors

... (truncated)

Commits
  • cb606df fix(sarif): Add timeout and security-checks for sarif (#156)
  • 0d7cf2d chore: improve message output sbom with gh (#145)
  • 5144f05 fix(config): Drop mixing of options with yaml config. (#148)
  • 81b9a6f Update Dockerfile (#152)
  • 503d3ab feat(yaml): Add support for trivy.yaml (#143)
  • 0105373 docs(trivy): Add instructions to scan tarballs. (#134)
  • bc615ae fix(tests): Update test golden files for Trivy v0.29.2 (#136)
  • 7b7aa26 feat(SBOM): Support SBOM generation (#129)
  • 63b6e4c docs: added missing HTML template and removed deprecated SARIF template (#132)
  • 49e970d chore: pinning 0.29.0 trivy (#128)
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

@dependabot dependabot bot added dependencies Pull requests that update a dependency file github_actions Pull requests that update Github_actions code labels Aug 4, 2022
@dependabot dependabot bot requested a review from a team August 4, 2022 15:20
@dependabot dependabot bot force-pushed the dependabot/github_actions/aquasecurity/trivy-action-0.6.2 branch 4 times, most recently from 50fb51d to a8e1388 Compare August 9, 2022 16:56
@lucacome
Copy link
Contributor

@dependabot rebase

1 similar comment
@lucacome
Copy link
Contributor

@dependabot rebase

@dependabot dependabot bot force-pushed the dependabot/github_actions/aquasecurity/trivy-action-0.6.2 branch 3 times, most recently from 93927d1 to 8dea9e5 Compare August 11, 2022 17:21
Bumps [aquasecurity/trivy-action](https://github.com/aquasecurity/trivy-action) from 0.2.3 to 0.6.2.
- [Release notes](https://github.com/aquasecurity/trivy-action/releases)
- [Commits](aquasecurity/trivy-action@0.2.3...0.6.2)

---
updated-dependencies:
- dependency-name: aquasecurity/trivy-action
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot force-pushed the dependabot/github_actions/aquasecurity/trivy-action-0.6.2 branch from 8dea9e5 to 1053406 Compare August 11, 2022 17:27
@lucacome lucacome merged commit d21f512 into main Aug 11, 2022
@lucacome lucacome deleted the dependabot/github_actions/aquasecurity/trivy-action-0.6.2 branch August 11, 2022 17:42
miledxz added a commit to miledxz/nginx-gateway-fabric that referenced this pull request Jan 14, 2025
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file github_actions Pull requests that update Github_actions code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant