keptn / lifecycle-toolkit

Toolkit for cloud-native application lifecycle management
https://keptn.sh
Apache License 2.0
267 stars 111 forks source link

deps: update aquasecurity/trivy-action action to v0.23.0 #3570

Closed renovate[bot] closed 6 days ago

renovate[bot] commented 6 days ago

Mend Renovate

This PR contains the following updates:

Package Type Update Change
aquasecurity/trivy-action action minor 0.19.0 -> 0.23.0

[!WARNING] Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Release Notes

aquasecurity/trivy-action (aquasecurity/trivy-action) ### [`v0.23.0`](https://togithub.com/aquasecurity/trivy-action/releases/tag/0.23.0) [Compare Source](https://togithub.com/aquasecurity/trivy-action/compare/0.22.0...0.23.0) #### What's Changed - Upgrade trivy to v0.52.2 by [@​Dr-DevOps](https://togithub.com/Dr-DevOps) in [https://github.com/aquasecurity/trivy-action/pull/367](https://togithub.com/aquasecurity/trivy-action/pull/367) **Full Changelog**: https://github.com/aquasecurity/trivy-action/compare/0.22.0...0.23.0 ### [`v0.22.0`](https://togithub.com/aquasecurity/trivy-action/releases/tag/0.22.0) [Compare Source](https://togithub.com/aquasecurity/trivy-action/compare/0.21.0...0.22.0) #### What's Changed - chore(docs): Reference the use of a pinned version by [@​simar7](https://togithub.com/simar7) in [https://github.com/aquasecurity/trivy-action/pull/356](https://togithub.com/aquasecurity/trivy-action/pull/356) - Upgrade trivy to v0.52.0 by [@​Keralin](https://togithub.com/Keralin) in [https://github.com/aquasecurity/trivy-action/pull/364](https://togithub.com/aquasecurity/trivy-action/pull/364) #### New Contributors - [@​Keralin](https://togithub.com/Keralin) made their first contribution in [https://github.com/aquasecurity/trivy-action/pull/364](https://togithub.com/aquasecurity/trivy-action/pull/364) **Full Changelog**: https://github.com/aquasecurity/trivy-action/compare/0.21.0...0.22.0 ### [`v0.21.0`](https://togithub.com/aquasecurity/trivy-action/releases/tag/0.21.0) [Compare Source](https://togithub.com/aquasecurity/trivy-action/compare/0.20.0...0.21.0) #### What's Changed - bump trivy version to v0.51.2 by [@​Dr-DevOps](https://togithub.com/Dr-DevOps) in [https://github.com/aquasecurity/trivy-action/pull/360](https://togithub.com/aquasecurity/trivy-action/pull/360) #### New Contributors - [@​Dr-DevOps](https://togithub.com/Dr-DevOps) made their first contribution in [https://github.com/aquasecurity/trivy-action/pull/360](https://togithub.com/aquasecurity/trivy-action/pull/360) **Full Changelog**: https://github.com/aquasecurity/trivy-action/compare/0.20.0...0.21.0 ### [`v0.20.0`](https://togithub.com/aquasecurity/trivy-action/releases/tag/0.20.0) [Compare Source](https://togithub.com/aquasecurity/trivy-action/compare/0.19.0...0.20.0) ##### What's Changed - Make 'hide-progress' input working again by [@​uridium](https://togithub.com/uridium) in [https://github.com/aquasecurity/trivy-action/pull/323](https://togithub.com/aquasecurity/trivy-action/pull/323) - feat(image): add `--docker-host` option for GH Action users by [@​calinmarina](https://togithub.com/calinmarina) in [https://github.com/aquasecurity/trivy-action/pull/267](https://togithub.com/aquasecurity/trivy-action/pull/267) - Browse Trivy reports without GitHub Advanced Security license by [@​uridium](https://togithub.com/uridium) in [https://github.com/aquasecurity/trivy-action/pull/328](https://togithub.com/aquasecurity/trivy-action/pull/328) - Fix docker host bug by [@​admiralAwkbar](https://togithub.com/admiralAwkbar) in [https://github.com/aquasecurity/trivy-action/pull/329](https://togithub.com/aquasecurity/trivy-action/pull/329) - Bump trivy version to v0.50.2 by [@​pdefreitas](https://togithub.com/pdefreitas) in [https://github.com/aquasecurity/trivy-action/pull/341](https://togithub.com/aquasecurity/trivy-action/pull/341) - update tests by [@​nikpivkin](https://togithub.com/nikpivkin) in [https://github.com/aquasecurity/trivy-action/pull/334](https://togithub.com/aquasecurity/trivy-action/pull/334) - bump trivy version to v0.51.1 by [@​simar7](https://togithub.com/simar7) in [https://github.com/aquasecurity/trivy-action/pull/353](https://togithub.com/aquasecurity/trivy-action/pull/353) ##### New Contributors - [@​uridium](https://togithub.com/uridium) made their first contribution in [https://github.com/aquasecurity/trivy-action/pull/323](https://togithub.com/aquasecurity/trivy-action/pull/323) - [@​calinmarina](https://togithub.com/calinmarina) made their first contribution in [https://github.com/aquasecurity/trivy-action/pull/267](https://togithub.com/aquasecurity/trivy-action/pull/267) - [@​admiralAwkbar](https://togithub.com/admiralAwkbar) made their first contribution in [https://github.com/aquasecurity/trivy-action/pull/329](https://togithub.com/aquasecurity/trivy-action/pull/329) - [@​pdefreitas](https://togithub.com/pdefreitas) made their first contribution in [https://github.com/aquasecurity/trivy-action/pull/341](https://togithub.com/aquasecurity/trivy-action/pull/341) **Full Changelog**: https://github.com/aquasecurity/trivy-action/compare/0.19.0...0.20.0

Configuration

📅 Schedule: Branch creation - "after 10pm every weekday,before 5am every weekday,every weekend" in timezone Europe/Vienna, Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

sonarcloud[bot] commented 6 days ago

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues

Measures
0 Security Hotspots
0.0% Coverage on New Code
0.0% Duplication on New Code

See analysis details on SonarCloud

codecov[bot] commented 6 days ago

Codecov Report

All modified and coverable lines are covered by tests :white_check_mark:

Project coverage is 85.27%. Comparing base (b548057) to head (92d6067).

Additional details and impacted files ```diff @@ Coverage Diff @@ ## main #3570 +/- ## ========================================== - Coverage 85.35% 85.27% -0.09% ========================================== Files 167 167 Lines 7414 7414 ========================================== - Hits 6328 6322 -6 - Misses 798 803 +5 - Partials 288 289 +1 ``` [see 2 files with indirect coverage changes](https://app.codecov.io/gh/keptn/lifecycle-toolkit/pull/3570/indirect-changes?src=pr&el=tree-more&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=keptn) | [Flag](https://app.codecov.io/gh/keptn/lifecycle-toolkit/pull/3570/flags?src=pr&el=flags&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=keptn) | Coverage Δ | | |---|---|---| | [certificate-operator](https://app.codecov.io/gh/keptn/lifecycle-toolkit/pull/3570/flags?src=pr&el=flag&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=keptn) | `69.23% <ø> (ø)` | | | [component-tests](https://app.codecov.io/gh/keptn/lifecycle-toolkit/pull/3570/flags?src=pr&el=flag&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=keptn) | `58.53% <ø> (-0.25%)` | :arrow_down: | | [lifecycle-operator](https://app.codecov.io/gh/keptn/lifecycle-toolkit/pull/3570/flags?src=pr&el=flag&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=keptn) | `83.42% <ø> (ø)` | | | [metrics-operator](https://app.codecov.io/gh/keptn/lifecycle-toolkit/pull/3570/flags?src=pr&el=flag&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=keptn) | `88.18% <ø> (-0.14%)` | :arrow_down: | | [scheduler](https://app.codecov.io/gh/keptn/lifecycle-toolkit/pull/3570/flags?src=pr&el=flag&utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=keptn) | `34.90% <ø> (ø)` | | Flags with carried forward coverage won't be shown. [Click here](https://docs.codecov.io/docs/carryforward-flags?utm_medium=referral&utm_source=github&utm_content=comment&utm_campaign=pr+comments&utm_term=keptn#carryforward-flags-in-the-pull-request-comment) to find out more.
odubajDT commented 6 days ago

security run https://github.com/keptn/lifecycle-toolkit/actions/runs/9691304364/job/26742544223