MediaMarktSaturn / technolinator

GitHub app for SBOM creation using cdxgen and upload to Dependency-Track
Apache License 2.0
15 stars 1 forks source link

chore(deps): update dependency anchore/grype to v0.82.1 #579

Closed heubeck closed 3 weeks ago

heubeck commented 4 weeks ago

This PR contains the following updates:

Package Update Change
anchore/grype patch v0.82.0 -> v0.82.1

Release Notes

anchore/grype (anchore/grype) ### [`v0.82.1`](https://redirect.github.com/anchore/grype/releases/tag/v0.82.1) [Compare Source](https://redirect.github.com/anchore/grype/compare/v0.82.0...v0.82.1) ##### Bug Fixes - Skip matching on packages with missing version info \[[#​2182](https://redirect.github.com/anchore/grype/pull/2182) [@​wagoodman](https://redirect.github.com/wagoodman)] - correctly identify version of traefik binaries \[[#​2178](https://redirect.github.com/anchore/grype/issues/2178) [#​2179](https://redirect.github.com/anchore/grype/pull/2179) [@​westonsteimel](https://redirect.github.com/westonsteimel)] - RPM version comparison oddity with release field \[[#​398](https://redirect.github.com/anchore/grype/issues/398) [#​2188](https://redirect.github.com/anchore/grype/pull/2188) [@​wagoodman](https://redirect.github.com/wagoodman)] - purl with epoch should be used even if version is missing epoch \[[#​2170](https://redirect.github.com/anchore/grype/issues/2170) [#​2186](https://redirect.github.com/anchore/grype/pull/2186) [@​wagoodman](https://redirect.github.com/wagoodman)] ##### Additional Changes - bump syft in quality gate to v1.14.0 \[[#​2187](https://redirect.github.com/anchore/grype/pull/2187) [@​westonsteimel](https://redirect.github.com/westonsteimel)] **[(Full Changelog)](https://redirect.github.com/anchore/grype/compare/v0.82.0...v0.82.1)**

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Renovate Bot.

technolinator-sbom-as-a-service[bot] commented 4 weeks ago

🏆 No vulnerabilities found