anchore / grype

A vulnerability scanner for container images and filesystems
Apache License 2.0
8.15k stars 528 forks source link

chore: Update syft v1.7.0 #1945

Closed spiffcs closed 2 weeks ago

spiffcs commented 2 weeks ago

Summary

This PR bumps grype to use the latest syft version v 1.7.0

The bulk of changes come from updating schema/cyclonedx/cyclonedx.xsd so that our cyclonedx documents can be measured and validated against the latest released version of cdx (v1.6)

These document updates were pulled from: https://github.com/CycloneDX/specification/tree/1.6/schema