-
Notifications
You must be signed in to change notification settings - Fork 89
Comparing changes
Open a pull request
base repository: anchore/scan-action
base: v3.3.6
head repository: anchore/scan-action
compare: v3.3.7
- 10 commits
- 15 files changed
- 11 contributors
Commits on Jun 27, 2023
-
Configuration menu - View commit details
-
Copy full SHA for 487706f - Browse repository at this point
Copy the full SHA 487706fView commit details
Commits on Jul 6, 2023
-
* Add by-cve option to action options Signed-off-by: too-gee <[email protected]> * chore: update audit to use npm-better-audit * chore: modify workflow to use new audit script Signed-off-by: Christopher Phillips <[email protected]> --------- Signed-off-by: Keith Zantow <[email protected]> Signed-off-by: too-gee <[email protected]> Signed-off-by: Christopher Phillips <[email protected]> Co-authored-by: Keith Zantow <[email protected]> Co-authored-by: Christopher Phillips <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 355bbe9 - Browse repository at this point
Copy the full SHA 355bbe9View commit details
Commits on Jul 13, 2023
-
chore(deps): update Grype to v0.63.1 (#233)
Signed-off-by: GitHub <[email protected]> Co-authored-by: kzantow <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f44918e - Browse repository at this point
Copy the full SHA f44918eView commit details -
chore: add new exception for audit (#235)
Signed-off-by: Christopher Phillips <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for f8d9cf1 - Browse repository at this point
Copy the full SHA f8d9cf1View commit details
Commits on Aug 28, 2023
-
chore(docs): update docker related actions to avoid warnings in workf…
…low (#240) Signed-off-by: Mykhailo Kuzmich <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 966ad43 - Browse repository at this point
Copy the full SHA 966ad43View commit details
Commits on Nov 7, 2023
-
fix: updated semver version (#241)
While updating the action with a new grype version npm run audit fails because of an issue with semver being vulnerable. https://github.com/anchore/scan-action/actions/runs/6479148648/job/17592137397?pr=236 The upgrade of semver is also failing, so the action is stuck with an old grype version. This commit has an upgraded semver version and a recreated index.js Signed-off-by: Gian Carlo Pace <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 6decf31 - Browse repository at this point
Copy the full SHA 6decf31View commit details
Commits on Nov 17, 2023
-
chore: add manual trigger to test workflow (#247)
Signed-off-by: Will Murphy <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 1ee3eaf - Browse repository at this point
Copy the full SHA 1ee3eafView commit details -
chore(deps): update Grype to v0.73.2; remove snapshot tests (#236)
* chore(deps): update Grype to v0.73.2 Signed-off-by: GitHub <[email protected]> * remove snapshot test; assert only valid SARIF Signed-off-by: Will Murphy <[email protected]> * make cmd arg assertions aware of debug Signed-off-by: Will Murphy <[email protected]> * put bundler vuln back from GHSA Signed-off-by: Will Murphy <[email protected]> --------- Signed-off-by: GitHub <[email protected]> Signed-off-by: Will Murphy <[email protected]> Co-authored-by: kzantow <[email protected]> Co-authored-by: Will Murphy <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for ba0a911 - Browse repository at this point
Copy the full SHA ba0a911View commit details
Commits on Nov 18, 2023
-
chore(deps): update Grype to v0.73.3 (#248)
Signed-off-by: GitHub <[email protected]> Co-authored-by: willmurphyscode <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for eeb941f - Browse repository at this point
Copy the full SHA eeb941fView commit details
Commits on Nov 20, 2023
-
chore: address test flakes (#249)
* chore: bump jest timeout We're seeing this timeout triggered in CI. Signed-off-by: Will Murphy <[email protected]> * bump timeout in remaining tests Signed-off-by: Will Murphy <[email protected]> * chore: only run push tests on main Otherwise, we'd run tests twice for each PR; once because it was a PR, and once because someone pushed to a branch. Signed-off-by: Will Murphy <[email protected]> * chore: even higher jest timeout Signed-off-by: Will Murphy <[email protected]> * chore: install grype ahead of tests Signed-off-by: Will Murphy <[email protected]> * chore: comment test timeout Signed-off-by: Will Murphy <[email protected]> --------- Signed-off-by: Will Murphy <[email protected]>
Configuration menu - View commit details
-
Copy full SHA for 62370b5 - Browse repository at this point
Copy the full SHA 62370b5View commit details
This comparison is taking too long to generate.
Unfortunately it looks like we can’t render this comparison for you right now. It might be too big, or there might be something weird with your repository.
You can try running this command locally to see the comparison on your machine:
git diff v3.3.6...v3.3.7