http-downloader
http-downloader copied to clipboard
chore(deps): bump aquasecurity/trivy-action from 0.2.1 to 0.20.0
Bumps aquasecurity/trivy-action from 0.2.1 to 0.20.0.
Release notes
Sourced from aquasecurity/trivy-action's releases.
v0.20.0
What's Changed
- Make 'hide-progress' input working again by
@uridiumin aquasecurity/trivy-action#323- feat(image): add
--docker-hostoption for GH Action users by@calinmarinain aquasecurity/trivy-action#267- Browse Trivy reports without GitHub Advanced Security license by
@uridiumin aquasecurity/trivy-action#328- Fix docker host bug by
@admiralAwkbarin aquasecurity/trivy-action#329- Bump trivy version to v0.50.2 by
@pdefreitasin aquasecurity/trivy-action#341- update tests by
@nikpivkinin aquasecurity/trivy-action#334- bump trivy version to v0.51.1 by
@simar7in aquasecurity/trivy-action#353New Contributors
@uridiummade their first contribution in aquasecurity/trivy-action#323@calinmarinamade their first contribution in aquasecurity/trivy-action#267@admiralAwkbarmade their first contribution in aquasecurity/trivy-action#329@pdefreitasmade their first contribution in aquasecurity/trivy-action#341Full Changelog: https://github.com/aquasecurity/trivy-action/compare/0.19.0...0.20.0
v0.19.0
What's Changed
- bump trivy version to v0.50.1 by
@simar7in aquasecurity/trivy-action#324Full Changelog: https://github.com/aquasecurity/trivy-action/compare/0.18.0...0.19.0
v0.18.0
What's Changed
- docs(report): improve documentation around
Using Trivy to generate SBOMand sending it to Github by@Maxim-Durandin aquasecurity/trivy-action#307- fix: Refer to scan-ref when scan-type is "sbom" by
@cococigin aquasecurity/trivy-action#314New Contributors
@Maxim-Durandmade their first contribution in aquasecurity/trivy-action#307@cococigmade their first contribution in aquasecurity/trivy-action#314Full Changelog: https://github.com/aquasecurity/trivy-action/compare/0.17.0...0.18.0
v0.17.0
What's Changed
- docs: add configuration info for flags not supported by inputs by
@DmitriyLewenin aquasecurity/trivy-action#296- fix: Fix
skip-filesandhide-progressoptions not being applied when using Sarif report format by@simao-silvain aquasecurity/trivy-action#297- Upgrades Trivy from 0.48.1 to v0.49.0 by
@kderckin aquasecurity/trivy-action#304New Contributors
@simao-silvamade their first contribution in aquasecurity/trivy-action#297Full Changelog: https://github.com/aquasecurity/trivy-action/compare/0.16.1...0.17.0
v0.16.1
What's Changed
- Update Trivy to 0.48.1 by
@MartiUKin aquasecurity/trivy-action#291
... (truncated)
Commits
b2933f5bump trivy version to v0.51.1 (#353)b2cd5ffUpdate bump-trivy.yaml6f8c237update tests (#334)7088d18Revert "fix: 🐛 allow trivy-config and other options to be used together (#338)"ee6a4f5fix: 🐛 allow trivy-config and other options to be used together (#338)b5f4977Bump trivy version to v0.50.2 (#341)207cd40Fix docker host bug (#329)840deb4Browse scan reports without GitHub Advanced Security license (#328)0f287dbfeat(image): add--docker-hostoption for GH Action users (#267)f72b7e8Make 'hide-progress' input working again (#323)- Additional commits viewable in compare view
Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.
Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR:
@dependabot rebasewill rebase this PR@dependabot recreatewill recreate this PR, overwriting any edits that have been made to it@dependabot mergewill merge this PR after your CI passes on it@dependabot squash and mergewill squash and merge this PR after your CI passes on it@dependabot cancel mergewill cancel a previously requested merge and block automerging@dependabot reopenwill reopen this PR if it is closed@dependabot closewill close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually@dependabot show <dependency name> ignore conditionswill show all of the ignore conditions of the specified dependency@dependabot ignore this major versionwill close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this minor versionwill close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)@dependabot ignore this dependencywill close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)