cisagov / cyber.dhs.gov

A site for CISA directives
https://cyber.dhs.gov
Other
157 stars 61 forks source link

Bump snyk from 1.676.0 to 1.859.0 #317

Closed dependabot[bot] closed 2 years ago

dependabot[bot] commented 2 years ago

Bumps snyk from 1.676.0 to 1.859.0.

Release notes

Sourced from snyk's releases.

v1.859.0

1.859.0 (2022-02-28)

Features

  • resolve single depth of references (e8d445c)

v1.858.0

1.858.0 (2022-02-24)

Features

v1.857.0

1.857.0 (2022-02-24)

Bug Fixes

  • use path separator for all OSes in tfvars (8651b22)

Features

  • add iac drift gen-driftignore command (36ddda8)
  • add debug logs for tf vars (356abe8)
  • add help page for iac-drift-scan (546f1b0)
  • add org name to snyk code test (33097ce)
  • dereference variables from terraform.tfvars and *.auto.tfvars (c2f7e94)
  • remove vulndb ff for unmanaged (c251a7d)

v1.856.0

1.856.0 (2022-02-22)

Bug Fixes

  • support dependencies with unknown version (0b8100c)

v1.855.0

1.855.0 (2022-02-17)

Bug Fixes

  • bumped up code-client feater (b0de91a)

... (truncated)

Commits
  • 0649b4b Merge pull request #2806 from snyk/chore/update_driftctl_version_v0_21_0
  • f33b99c Merge pull request #2791 from snyk/feat/resolve-single-depth-references
  • dbfcc49 chore: Update Driftctl version to v0.21.0
  • c3d95d2 Merge pull request #2792 from snyk/feat/iac_fix_drift_output_args
  • 73e3ef0 Merge pull request #2702 from snyk/feat/iac-cli-share-results
  • d2fb947 feat: IaC CLI Share Results
  • e8d445c feat: resolve single depth of references
  • 4c4171c test: add failing test for tf plan v4
  • 82f4510 Merge pull request #2794 from snyk/fix/tfvars-path-windows
  • 8651b22 fix: use path separator for all OSes in tfvars
  • Additional commits viewable in compare view


Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options
You can trigger Dependabot actions by commenting on this PR: - `@dependabot rebase` will rebase this PR - `@dependabot recreate` will recreate this PR, overwriting any edits that have been made to it - `@dependabot merge` will merge this PR after your CI passes on it - `@dependabot squash and merge` will squash and merge this PR after your CI passes on it - `@dependabot cancel merge` will cancel a previously requested merge and block automerging - `@dependabot reopen` will reopen this PR if it is closed - `@dependabot close` will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually - `@dependabot ignore this major version` will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this minor version` will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself) - `@dependabot ignore this dependency` will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
dependabot[bot] commented 2 years ago

Superseded by #323.