blurtechlegacy / sphinx-backend

REST API for Sphinx Application
Other
2 stars 0 forks source link

fix(deps): update dependency snyk to v1.134.2 #33

Closed renovate[bot] closed 5 years ago

renovate[bot] commented 5 years ago

This PR contains the following updates:

Package Type Update Change References
snyk dependencies minor 1.108.3 -> 1.134.2 source

Release Notes

snyk/snyk ### [`v1.134.2`](https://togithub.com/snyk/snyk/releases/v1.134.2) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.134.1...v1.134.2) ##### Bug Fixes - properly unlink files that were removed by patches ([908bc3a](https://togithub.com/snyk/snyk/commit/908bc3a)) - robust patch fetching to avoid a race condition ([46da9c2](https://togithub.com/snyk/snyk/commit/46da9c2)) - update nuget-plugin version ([607aabc](https://togithub.com/snyk/snyk/commit/607aabc)) ### [`v1.134.1`](https://togithub.com/snyk/snyk/releases/v1.134.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.134.0...v1.134.1) ##### Bug Fixes - bump deps ([79f5411](https://togithub.com/snyk/snyk/commit/79f5411)) ### [`v1.134.0`](https://togithub.com/snyk/snyk/releases/v1.134.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.133.0...v1.134.0) ##### Features - Pass down strict out of sync flag to the lockfile parser ([42b1ec1](https://togithub.com/snyk/snyk/commit/42b1ec1)) ### [`v1.133.0`](https://togithub.com/snyk/snyk/releases/v1.133.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.132.2...v1.133.0) ##### Bug Fixes - concise patch error metadata ([0ad9e38](https://togithub.com/snyk/snyk/commit/0ad9e38)) - more verbose error in case of patch failure ([b303094](https://togithub.com/snyk/snyk/commit/b303094)) ##### Features - bump docker plugin to 1.22.0 - handle SHA256 as tag name ([174eba0](https://togithub.com/snyk/snyk/commit/174eba0)) ### [`v1.132.2`](https://togithub.com/snyk/snyk/releases/v1.132.2) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.132.1...v1.132.2) ##### Bug Fixes - Re-pin get-uri at 2.0.2 ([8ed4755](https://togithub.com/snyk/snyk/commit/8ed4755)) ### [`v1.132.1`](https://togithub.com/snyk/snyk/releases/v1.132.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.132.0...v1.132.1) ##### Bug Fixes - improve patch-fail error analytics ([8f720dd](https://togithub.com/snyk/snyk/commit/8f720dd)) ### [`v1.132.0`](https://togithub.com/snyk/snyk/releases/v1.132.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.131.0...v1.132.0) ##### Features - add paket ([6ebacda](https://togithub.com/snyk/snyk/commit/6ebacda)) ### [`v1.131.0`](https://togithub.com/snyk/snyk/releases/v1.131.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.130.0...v1.131.0) ##### Features - use jsdiff instead of 'patch' to reduce dependency on OS binaries ([3e5838a](https://togithub.com/snyk/snyk/commit/3e5838a)) ### [`v1.130.0`](https://togithub.com/snyk/snyk/releases/v1.130.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.129.0...v1.130.0) ##### Features - remove misleading docker layers count breakdown ([a25d205](https://togithub.com/snyk/snyk/commit/a25d205)) ### [`v1.129.0`](https://togithub.com/snyk/snyk/releases/v1.129.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.128.0...v1.129.0) ##### Features - bump snyk-docker-plugin to include openjdk analyser fix ([2545dbe](https://togithub.com/snyk/snyk/commit/2545dbe)) ### [`v1.128.0`](https://togithub.com/snyk/snyk/releases/v1.128.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.127.0...v1.128.0) ##### Features - exclude docker base image vulns from display flag ([4698eaa](https://togithub.com/snyk/snyk/commit/4698eaa)) ### [`v1.127.0`](https://togithub.com/snyk/snyk/releases/v1.127.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.126.0...v1.127.0) ##### Features - docker options passthrough and adoptopenjdk support ([bd186e7](https://togithub.com/snyk/snyk/commit/bd186e7)) ### [`v1.126.0`](https://togithub.com/snyk/snyk/releases/v1.126.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.125.0...v1.126.0) ##### Features - Bump lockfile parser version to detect yarn workspaces ([303524c](https://togithub.com/snyk/snyk/commit/303524c)) ### [`v1.125.0`](https://togithub.com/snyk/snyk/releases/v1.125.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.124.1...v1.125.0) ##### Features - bump docker plugin ([5074af2](https://togithub.com/snyk/snyk/commit/5074af2)) ### [`v1.124.1`](https://togithub.com/snyk/snyk/releases/v1.124.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.124.0...v1.124.1) ##### Bug Fixes - bump nodejs-lockfile-parser to update vulnerable deps ([c311382](https://togithub.com/snyk/snyk/commit/c311382)) ### [`v1.124.0`](https://togithub.com/snyk/snyk/releases/v1.124.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.123.0...v1.124.0) ##### Features - move fixed in calculation for os packages to phoenix ([a38167c](https://togithub.com/snyk/snyk/commit/a38167c)) ### [`v1.123.0`](https://togithub.com/snyk/snyk/releases/v1.123.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.122.4...v1.123.0) ##### Features - remove semver for binaries and use nearestFixedInVersion instead ([97a2d63](https://togithub.com/snyk/snyk/commit/97a2d63)) ### [`v1.122.4`](https://togithub.com/snyk/snyk/releases/v1.122.4) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.122.3...v1.122.4) ##### Bug Fixes - **docs:** add missing composer.lock file ([f66d1b9](https://togithub.com/snyk/snyk/commit/f66d1b9)) ### [`v1.122.3`](https://togithub.com/snyk/snyk/releases/v1.122.3) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.122.2...v1.122.3) ##### Bug Fixes - bump php plugin to better support file paths ([319cf35](https://togithub.com/snyk/snyk/commit/319cf35)) ### [`v1.122.2`](https://togithub.com/snyk/snyk/releases/v1.122.2) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.122.1...v1.122.2) ##### Bug Fixes - bump docker plugin ([3667dcd](https://togithub.com/snyk/snyk/commit/3667dcd)) ### [`v1.122.1`](https://togithub.com/snyk/snyk/releases/v1.122.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.122.0...v1.122.1) ##### Bug Fixes - pin proxy-agent & get-uri deps to not-break node 4 ([8bfae15](https://togithub.com/snyk/snyk/commit/8bfae15)) ### [`v1.122.0`](https://togithub.com/snyk/snyk/releases/v1.122.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.121.1...v1.122.0) ##### Bug Fixes - Undefined base image ([962810a](https://togithub.com/snyk/snyk/commit/962810a)) ##### Features - send docker image layers SHAs ([0827c2e](https://togithub.com/snyk/snyk/commit/0827c2e)) ### [`v1.121.1`](https://togithub.com/snyk/snyk/releases/v1.121.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.121.0...v1.121.1) ##### Bug Fixes - bumping snyk-gradle-plugin ([518a4be](https://togithub.com/snyk/snyk/commit/518a4be)) ### [`v1.121.0`](https://togithub.com/snyk/snyk/releases/v1.121.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.120.1...v1.121.0) ##### Features - Split dockerfile / base image vulns ([b2f530d](https://togithub.com/snyk/snyk/commit/b2f530d)) ### [`v1.120.1`](https://togithub.com/snyk/snyk/releases/v1.120.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.120.0...v1.120.1) ##### Bug Fixes - typos and grammar cleanup ([d62e30c](https://togithub.com/snyk/snyk/commit/d62e30c)) - update keywords for npm package ([66fbc32](https://togithub.com/snyk/snyk/commit/66fbc32)) - use consistent word style ([c903a43](https://togithub.com/snyk/snyk/commit/c903a43)) ### [`v1.120.0`](https://togithub.com/snyk/snyk/releases/v1.120.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.119.0...v1.120.0) ##### Features - display fixed in version key & refactor binaries issues display logic ([80daaf5](https://togithub.com/snyk/snyk/commit/80daaf5)) ### [`v1.119.0`](https://togithub.com/snyk/snyk/releases/v1.119.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.118.2...v1.119.0) ##### Features - dedicated display docker binaries issues ([c3f6b3f](https://togithub.com/snyk/snyk/commit/c3f6b3f)) ### [`v1.118.2`](https://togithub.com/snyk/snyk/releases/v1.118.2) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.118.1...v1.118.2) ##### Bug Fixes - bump version for snyk-policy dependency ([6b32de4](https://togithub.com/snyk/snyk/commit/6b32de4)) ### [`v1.118.1`](https://togithub.com/snyk/snyk/releases/v1.118.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.118.0...v1.118.1) ##### Bug Fixes - bump version for snyk-policy and snyk-nodejs-lockfile-parser dependencies ([f8abcba](https://togithub.com/snyk/snyk/commit/f8abcba)) - corrected analytics keys to match conventions. ([49abf37](https://togithub.com/snyk/snyk/commit/49abf37)) ### [`v1.118.0`](https://togithub.com/snyk/snyk/releases/v1.118.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.117.2...v1.118.0) ##### Features - support docker binaries display ([c04550b](https://togithub.com/snyk/snyk/commit/c04550b)) ### [`v1.117.2`](https://togithub.com/snyk/snyk/releases/v1.117.2) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.117.1...v1.117.2) ##### Bug Fixes - bump python-plugin to not depend on `pip` being available ([6708739](https://togithub.com/snyk/snyk/commit/6708739)) ### [`v1.117.1`](https://togithub.com/snyk/snyk/releases/v1.117.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.117.0...v1.117.1) ##### Bug Fixes - add tests for missing package name ([640eb2c](https://togithub.com/snyk/snyk/commit/640eb2c)) ### [`v1.117.0`](https://togithub.com/snyk/snyk/releases/v1.117.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.116.4...v1.117.0) ##### Features - bump snyk-docker-plugin version ([6d1d546](https://togithub.com/snyk/snyk/commit/6d1d546)) ### [`v1.116.4`](https://togithub.com/snyk/snyk/releases/v1.116.4) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.116.3...v1.116.4) ##### Bug Fixes - bump mvn, gradle and sbt plugins to support target file paths ([29b5ce8](https://togithub.com/snyk/snyk/commit/29b5ce8)) ### [`v1.116.3`](https://togithub.com/snyk/snyk/releases/v1.116.3) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.116.2...v1.116.3) ##### Bug Fixes - add tests for missing package name ([d2cfcb0](https://togithub.com/snyk/snyk/commit/d2cfcb0)) ### [`v1.116.2`](https://togithub.com/snyk/snyk/releases/v1.116.2) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.116.1...v1.116.2) ##### Bug Fixes - gpg complains on non-tty mode in docker building process ([d04bc43](https://togithub.com/snyk/snyk/commit/d04bc43)) ### [`v1.116.1`](https://togithub.com/snyk/snyk/releases/v1.116.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.116.0...v1.116.1) ##### Bug Fixes - docker image fails with spaces in project folder names ([ccf6db1](https://togithub.com/snyk/snyk/commit/ccf6db1)) ### [`v1.116.0`](https://togithub.com/snyk/snyk/releases/v1.116.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.115.0...v1.116.0) ##### Features - add a CLI message when newer version is available ([5053c4e](https://togithub.com/snyk/snyk/commit/5053c4e)) ### [`v1.115.0`](https://togithub.com/snyk/snyk/releases/v1.115.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.114.1...v1.115.0) ##### Bug Fixes - missing comma in .releaserc ([bba2038](https://togithub.com/snyk/snyk/commit/bba2038)) ##### Features - sha256 checksums for binary releases ([0b13a04](https://togithub.com/snyk/snyk/commit/0b13a04)) ### [`v1.114.1`](https://togithub.com/snyk/snyk/releases/v1.114.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.114.0...v1.114.1) ##### Bug Fixes - when "name" property is missing in package.json use path as a project name ([0387444](https://togithub.com/snyk/snyk/commit/0387444)) ### [`v1.114.0`](https://togithub.com/snyk/snyk/releases/v1.114.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.113.0...v1.114.0) ##### Features - bump docker plugin version ([b8e085c](https://togithub.com/snyk/snyk/commit/b8e085c)) ### [`v1.113.0`](https://togithub.com/snyk/snyk/releases/v1.113.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.112.0...v1.113.0) ##### Features - bump docker plugin ([83d4c9c](https://togithub.com/snyk/snyk/commit/83d4c9c)) ### [`v1.112.0`](https://togithub.com/snyk/snyk/releases/v1.112.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.111.1...v1.112.0) ##### Features - Bump required lockfile parser version ([762f056](https://togithub.com/snyk/snyk/commit/762f056)) ### [`v1.111.1`](https://togithub.com/snyk/snyk/releases/v1.111.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.111.0...v1.111.1) ##### Bug Fixes - update [@​snyk](https://togithub.com/snyk)/dep-graph bugfix handling of versions with pipes ([b2f8173](https://togithub.com/snyk/snyk/commit/b2f8173)) ### [`v1.111.0`](https://togithub.com/snyk/snyk/releases/v1.111.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.110.2...v1.111.0) ##### Features - test plugin dep-trees as graphs via new /test-dep-graph API ([b23d9cc](https://togithub.com/snyk/snyk/commit/b23d9cc)) ### [`v1.110.2`](https://togithub.com/snyk/snyk/releases/v1.110.2) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.110.1...v1.110.2) ##### Bug Fixes - when package-lock.json file is present, snyk wizard included devDepepndencies in vulnerability count ([df876c6](https://togithub.com/snyk/snyk/commit/df876c6)) ### [`v1.110.1`](https://togithub.com/snyk/snyk/releases/v1.110.1) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.110.0...v1.110.1) ##### Bug Fixes - Parse ARGs in Dockerfile FROM instructions ([9291302](https://togithub.com/snyk/snyk/commit/9291302)) ### [`v1.110.0`](https://togithub.com/snyk/snyk/releases/v1.110.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.109.0...v1.110.0) ##### Bug Fixes - CR fixes ([580d9ae](https://togithub.com/snyk/snyk/commit/580d9ae)) ##### Features - suggest using --docker ([31ee873](https://togithub.com/snyk/snyk/commit/31ee873)) ### [`v1.109.0`](https://togithub.com/snyk/snyk/releases/v1.109.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.108.3...v1.109.0) ##### Features - send the base image to registry when running `snyk monitor` ([cb78573](https://togithub.com/snyk/snyk/commit/cb78573))

Renovate configuration

:date: Schedule: At any time (no schedule defined).

:vertical_traffic_light: Automerge: Disabled by config. Please merge this manually once you are satisfied.

:recycle: Rebasing: Whenever PR becomes conflicted, or if you modify the PR title to begin with "rebase!".

:no_bell: Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Renovate Bot. View repository job log here.