Skip to content

Releases: AlaudaDevops/trivy

v0.70.1-alauda-2

08 Jun 02:01
723e0ae

Choose a tag to compare

Changelog

  • 723e0ae chore(go): rebuild with Go 1.26.4 to fix stdlib CVEs (#157)

This release is intended for use only as part of the Alauda product suite. It is not recommended for use by individuals or teams outside of Alauda. Any consequences arising from its use are the sole responsibility of the user.

v0.68.3-alauda-7

02 Jun 11:39
3dbf014

Choose a tag to compare

Changelog

  • 3dbf014 fix: remediate Go dependency vulnerabilities (#156)

This release is intended for use only as part of the Alauda product suite. It is not recommended for use by individuals or teams outside of Alauda. Any consequences arising from its use are the sole responsibility of the user.

v0.70.1-alauda-1

20 May 13:56

Choose a tag to compare

Changelog

  • 63152e1 chore(deps): bump go-git to v5.19.1

This release is intended for use only as part of the Alauda product suite. It is not recommended for use by individuals or teams outside of Alauda. Any consequences arising from its use are the sole responsibility of the user.

v0.70.1-alauda-0

20 May 04:47
be27f80

Choose a tag to compare

Changelog

  • f50b96a chore(alpine): add EOL date for alpine 3.23 (#9934)
  • 96e7083 chore(cli): Remove Trivy Cloud (#9847)
  • 9058d51 chore(deps): Switch to go-viper/mapstructure (#9579)
  • 7a6594c chore(deps): bump golang.org/x/tools to v0.40.0 + gopls to v0.21.0 (#9973)
  • ea6663a chore(deps): bump alpine from 3.21.4 to 3.22.1 (#9301)
  • d528250 chore(deps): bump alpine from 3.22.1 to 3.23.0 (#9935)
  • 5fe09eb chore(deps): bump github.com/cloudflare/circl from 1.6.1 to 1.6.3 (#10241)
  • 3169ebf chore(deps): bump github.com/containerd/containerd from 1.7.28 to 1.7.29 (#9764)
  • be419c7 chore(deps): bump github.com/containerd/containerd/v2 from 2.1.4 to 2.1.5 (#9763)
  • 39273f3 chore(deps): bump github.com/docker/cli from 29.0.3+incompatible to 29.1.1+incompatible in the docker group (#9859)
  • 2a140f1 chore(deps): bump github.com/docker/cli from 29.1.4+incompatible to 29.2.1+incompatible in the docker group across 1 directory (#10221)
  • 1a0c038 chore(deps): bump github.com/docker/docker from 28.3.2+incompatible to 28.3.3+incompatible (#9274)
  • 8662089 chore(deps): bump github.com/go-git/go-git/v5 from 5.16.4 to 5.16.5 (#10179)
  • 6d40a98 chore(deps): bump github.com/hashicorp/go-getter from 1.8.5 to 1.8.6 (#10510)
  • 848f41b chore(deps): bump github.com/moby/buildkit from 0.27.1 to 0.28.1 (#10449)
  • 2ce48c7 chore(deps): bump github.com/opencontainers/selinux from 1.12.0 to 1.13.0 (#9778)
  • 68ca612 chore(deps): bump github.com/quic-go/quic-go from 0.52.0 to 0.54.1 (#9694)
  • 5eda0a4 chore(deps): bump github.com/quic-go/quic-go from 0.54.1 to 0.57.0 (#9952)
  • c3373b1 chore(deps): bump github.com/sigstore/cosign/v2 from 2.2.4 to 2.6.2 (#10048)
  • 8b46122 chore(deps): bump github.com/sigstore/rekor from 1.4.3 to 1.5.0 (#10084)
  • 5d76153 chore(deps): bump github.com/sigstore/sigstore from 1.10.3 to 1.10.4 (#10085)
  • 2175597 chore(deps): bump github.com/sigstore/timestamp-authority/v2 from 2.0.3 to 2.0.6 (#10526)
  • 8025e90 chore(deps): bump github.com/theupdateframework/go-tuf/v2 from 2.3.0 to 2.3.1 (#10079)
  • f00f8de chore(deps): bump github.com/theupdateframework/go-tuf/v2 from 2.3.1 to 2.4.1 (#10091)
  • db19b34 chore(deps): bump github.com/ulikunitz/xz from 0.5.12 to 0.5.14 (#9403)
  • 01295f3 chore(deps): bump go.opentelemetry.io/otel/sdk from 1.39.0 to 1.40.0 (#10257)
  • 974de49 chore(deps): bump go.opentelemetry.io/otel/sdk from 1.42.0 to 1.43.0 (#10496)
  • e13d970 chore(deps): bump golang.org/x/crypto from 0.41.0 to 0.45.0 (#9827)
  • 297e7fa chore(deps): bump google.golang.org/grpc from 1.78.0 to 1.79.3 (#10407)
  • c6d4607 chore(deps): bump helm.sh/helm/v3 from 3.18.3 to 3.18.4 (#9164)
  • 35d28e8 chore(deps): bump helm.sh/helm/v3 from 3.20.1 to 3.20.2 (#10511)
  • 6dbe369 chore(deps): bump testcontainers-go to v0.42.0 (#10531)
  • cc64eeb chore(deps): bump the aws group across 1 directory with 6 updates (#10068)
  • a01f109 chore(deps): bump the aws group across 1 directory with 6 updates (#10249)
  • 8abde2c chore(deps): bump the aws group with 6 updates (#9383)
  • 331cf5d chore(deps): bump the aws group with 6 updates (#9481)
  • fd92773 chore(deps): bump the aws group with 6 updates (#9547)
  • b7b4910 chore(deps): bump the aws group with 7 updates (#9311)
  • 2125895 chore(deps): bump the aws group with 7 updates (#9419)
  • 8876b46 chore(deps): bump the aws group with 7 updates (#9691)
  • 8967622 chore(deps): bump the common group across 1 directory with 20 updates (#9840)
  • 1a6f7a1 chore(deps): bump the common group across 1 directory with 22 updates (#10408)
  • 1c09181 chore(deps): bump the common group across 1 directory with 24 updates (#10206)
  • 3ada677 chore(deps): bump the common group across 1 directory with 24 updates (#9228)
  • 366910b chore(deps): bump the common group across 1 directory with 24 updates (#9507)
  • d1adbe3 chore(deps): bump the common group across 1 directory with 26 updates (#9347)
  • 36ab331 chore(deps): bump the common group across 1 directory with 7 updates (#9590)
  • 9588325 chore(deps): bump the common group across 1 directory with 8 updates (#10248)
  • 50c7a1e chore(deps): bump the common group across 1 directory with 8 updates (#10540)
  • 482d383 chore(deps): bump the common group across 1 directory with 9 updates (#9153)
  • f58826f chore(deps): bump the common group across 1 directory with 9 updates (#9903)
  • 102cbee chore(deps): bump the common group with 7 updates (#9382)
  • 885fbce chore(deps): bump the docker group across 1 directory with 2 updates (#10538)
  • 84518db chore(deps): bump the docker group with 3 updates (#9545)
  • f5bbb0b chore(deps): bump the docker group with 3 updates (#9776)
  • 406c209 chore(deps): bump the github-actions group across 1 directory with 2 updates (#8962)
  • 3962ea4 chore(deps): bump the github-actions group across 1 directory with 9 updates (#9563)
  • ccf5a5a chore(deps): bump the github-actions group across 3 directories with 11 updates (#10242)
  • 60eb3f0 chore(deps): bump the github-actions group with 11 updates (#10001)
  • c03facf chore(deps): bump the github-actions group with 4 updates (#9739)
  • b503278 chore(deps): bump the testcontainers group with 2 updates (#9506)
  • 04d018b chore(deps): bump to alpine from 3.21.3 to 3.21.4 (#9283)
  • 7415661 chore(deps): bump to alpine:3.23.3 and go-1.25.6 to fix CVEs (#10107)
  • b4f2457 chore(deps): bump up Trivy-kubernetes to v0.9.1 (#9214)
  • fb05196 chore(deps): update Docker client SDK to v29 (#10202)
  • 05375d1 chore(deps): update to module-compatible docker-credential-gcr/v2 (#9591)
  • bb149fc chore(license): add missed spdx exceptions: (#9147)
  • 78a70e2 chore: Update release flow to include chocolatey (#9460)
  • 2555335 chore: Update release workflow to trigger version updates (#9162)
  • 75c4dc0 chore: add client option to install script (#9962)
  • 719ea29 chore: add context to the cache interface (#9565)
  • 75857e9 chore: add debug log to show image source location (#9163)
  • d2d0ec2 chore: add modernize tool integration for code modernization (#9251)
  • be27f80 chore: bootstrap alauda-v0.70.0 fork, upgrade Go, fix dependency vulns (#145)
  • 2185c78 chore: bump Go to 1.24.7 (#9435)
  • 2d92b27 chore: bump SPDX license IDs and exceptions to v3.28.0 (#10233)
  • a4f7937 chore: bump golangci-lint to v2.10.0 (#10223)
  • ba9feb6 chore: bump trivy-checks to v2 (#9875)
  • 703de6d chore: delete roadmap wf (#10295)
  • 26a08f5 chore: drop FreeBSD 32-bit support (#9102)
  • c9cb3d1 chore: fix some function names in comment (#9314)
  • 8f5b560 chore: implement process-safe temp file cleanup (#9241)
  • 85a156c chore: migrate protoc setup from Docker to buf CLI (#9184)
  • d2245de chore: remove aquasecurity/homebrew-trivy tap from GoReleaser (#10508)
  • 1962aa9 chore: replace smithy epoch parsing with stdlib time.Unix (#10286)
  • f0e23ea chore: switch to ID from AVDID in internal and user-facing fields (#9655)
  • 612ee98 chore: trigger the trivy-www workflow (#9737)
  • 21e6888 chore: update CODEOWNERS (#10529)
  • 43d4e55 chore: update reference links to Go Wiki (#9987)
  • b5da1b8 chore: update template URL for brew formula (#9221)
  • 32f3df1...
Read more

v0.68.3-alauda-6

18 May 07:22
a18112e

Choose a tag to compare

Changelog

  • a18112e fix(deps): update module github.com/in-toto/in-toto-golang to v0.11.0 [security] (#140)

This release is intended for use only as part of the Alauda product suite. It is not recommended for use by individuals or teams outside of Alauda. Any consequences arising from its use are the sole responsibility of the user.

v0.65.1-alauda-35

10 May 06:02

Choose a tag to compare

Changelog

  • b42c0cf chore: bump in-toto-golang

This release is intended for use only as part of the Alauda product suite. It is not recommended for use by individuals or teams outside of Alauda. Any consequences arising from its use are the sole responsibility of the user.

v0.68.3-alauda-5

09 May 15:27

Choose a tag to compare

Changelog

  • 62f402a chore(deps): update dependency go to v1.26.3

This release is intended for use only as part of the Alauda product suite. It is not recommended for use by individuals or teams outside of Alauda. Any consequences arising from its use are the sole responsibility of the user.

v0.65.1-alauda-34

09 May 15:27

Choose a tag to compare

Changelog

  • c3f6b1a chore(deps): update dependency go to v1.26.3

This release is intended for use only as part of the Alauda product suite. It is not recommended for use by individuals or teams outside of Alauda. Any consequences arising from its use are the sole responsibility of the user.

v0.65.1-alauda-33

08 May 15:48

Choose a tag to compare

Changelog

  • 4b45f15 chore: bump Go version to 1.26.3

This release is intended for use only as part of the Alauda product suite. It is not recommended for use by individuals or teams outside of Alauda. Any consequences arising from its use are the sole responsibility of the user.

v0.65.1-alauda-32

22 Apr 05:23

Choose a tag to compare

Changelog

  • 70fc171 fix(deps): partially fix Go dependency vulnerabilities on alauda-v0.65.0

This release is intended for use only as part of the Alauda product suite. It is not recommended for use by individuals or teams outside of Alauda. Any consequences arising from its use are the sole responsibility of the user.