travi-org / admin.travi.org

reference client to api.travi.org
https://admin.travi.org
MIT License
3 stars 0 forks source link

fix(deps): update dependency snyk to v1.1064.0 [security] #3405

Closed renovate[bot] closed 10 months ago

renovate[bot] commented 1 year ago

Mend Renovate

This PR contains the following updates:

Package Type Update Change OpenSSF
snyk dependencies minor 1.695.0 -> 1.1064.0 OpenSSF Scorecard

GitHub Vulnerability Alerts

CVE-2022-40764

Snyk CLI before 1.996.0 allows arbitrary command execution, affecting Snyk IDE plugins and the snyk npm package. Exploitation could follow from the common practice of viewing untrusted files in the Visual Studio Code editor, for example. The original demonstration was with shell metacharacters in the vendor.json ignore field, affecting snyk-go-plugin before 1.19.1. This affects, for example, the Snyk TeamCity plugin (which does not update automatically) before 20220930.142957.

CVE-2022-22984

The package snyk before 1.1064.0; the package snyk-mvn-plugin before 2.31.3; the package snyk-gradle-plugin before 3.24.5; the package @​snyk/snyk-cocoapods-plugin before 2.5.3; the package snyk-sbt-plugin before 2.16.2; the package snyk-python-plugin before 1.24.2; the package snyk-docker-plugin before 5.6.5; the package @​snyk/snyk-hex-plugin before 1.1.6 are vulnerable to Command Injection due to an incomplete fix for CVE-2022-40764. A successful exploit allows attackers to run arbitrary commands on the host system where the Snyk CLI is installed by passing in crafted command line flags. In order to exploit this vulnerability, a user would have to execute the snyk test command on untrusted files. In most cases, an attacker positioned to control the command line arguments to the Snyk CLI would already be positioned to execute arbitrary commands. However, this could be abused in specific scenarios, such as continuous integration pipelines, where developers can control the arguments passed to the Snyk CLI to leverage this component as part of a wider attack against an integration/build pipeline. This issue has been addressed in the latest Snyk Docker images available at https://hub.docker.com/r/snyk/snyk as of 2022-11-29. Images downloaded and built prior to that date should be updated. The issue has also been addressed in the Snyk TeamCity CI/CD plugin as of version v20221130.093605.

CVE-2022-24441

The package snyk before 1.1064.0 is vulnerable to Code Injection when analyzing a project. An attacker who can convince a user to scan a malicious project can include commands in a build file such as build.gradle or gradle-wrapper.jar, which will be executed with the privileges of the application. This vulnerability may be triggered when running the the CLI tool directly, or when running a scan with one of the IDE plugins that invoke the Snyk CLI. Successful exploitation of this issue would likely require some level of social engineering - to coerce an untrusted project to be downloaded and analyzed via the Snyk CLI or opened in an IDE where a Snyk IDE plugin is installed and enabled. Additionally, if the IDE has a Trust feature then the target folder must be marked as ‘trusted’ in order to be vulnerable.

NOTE: This issue is independent of the one reported in CVE-2022-40764, and upgrading to a fixed version for this addresses that issue as well.

The affected IDE plugins and versions are:


Release Notes

snyk/snyk (snyk) ### [`v1.1064.0`](https://togithub.com/snyk/cli/releases/tag/v1.1064.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1063.0...v1.1064.0) ##### Bug Fixes - escape child process arguments ([80d97a9](https://togithub.com/snyk/snyk/commit/80d97a93326406e09776156daf72e3caa03ae25a)) ### [`v1.1063.0`](https://togithub.com/snyk/cli/releases/tag/v1.1063.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1062.0...v1.1063.0) ##### Features - base64 default for sast analysis ([369fe11](https://togithub.com/snyk/snyk/commit/369fe1178b83d19dc83000cffcfee606813bcbe1)) - support sev.threshold for unm.-deps ([cc329fd](https://togithub.com/snyk/snyk/commit/cc329fdda6b6853afca5483a7a0e562ab50ad54d)) ### [`v1.1062.0`](https://togithub.com/snyk/cli/releases/tag/v1.1062.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1061.0...v1.1062.0) ##### Bug Fixes - use lenient config in gradle plugin ([afc1ccb](https://togithub.com/snyk/snyk/commit/afc1ccb0db5fd038732b0c203a3f5be9034549c8)) ### [`v1.1061.0`](https://togithub.com/snyk/cli/releases/tag/v1.1061.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1060.0...v1.1061.0) ##### Features - upgrade snyk-iac-test to v0.37.0 ([ef864be](https://togithub.com/snyk/snyk/commit/ef864be9915f05b11533950672a4abb8618892b6)) ### [`v1.1060.0`](https://togithub.com/snyk/cli/releases/tag/v1.1060.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1059.0...v1.1060.0) ##### Bug Fixes - update snyk-docker-plugin ([cc200eb](https://togithub.com/snyk/snyk/commit/cc200eb7b248d6e75c0e29adf3c904fc338b2a00)) ### [`v1.1059.0`](https://togithub.com/snyk/cli/releases/tag/v1.1059.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1058.0...v1.1059.0) ##### Bug Fixes - bump snyk-gradle-plugin to 3.24.5 ([a75faaf](https://togithub.com/snyk/snyk/commit/a75faaf56c4e1dedc0352ab303f4e745033d5106)) ### [`v1.1058.0`](https://togithub.com/snyk/cli/releases/tag/v1.1058.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1057.0...v1.1058.0) ##### Features - Upgrade snyk-iac-test to v0.36.5 ([71e8ba5](https://togithub.com/snyk/snyk/commit/71e8ba5e5178f2927b50b9b97bfb5de055a3fec5)) ### [`v1.1057.0`](https://togithub.com/snyk/snyk/compare/v1.1056.0...v1.1057.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1056.0...v1.1057.0) ### [`v1.1056.0`](https://togithub.com/snyk/cli/releases/tag/v1.1056.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1055.0...v1.1056.0) ##### Bug Fixes - improve go file path determination ([f426bdb](https://togithub.com/snyk/snyk/commit/f426bdbdd343b3aab519e1e7a739a682c1334f6d)) ### [`v1.1055.0`](https://togithub.com/snyk/cli/releases/tag/v1.1055.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1054.0...v1.1055.0) ##### Bug Fixes - restore env proxy launching snyk-iac-test ([fec034b](https://togithub.com/snyk/snyk/commit/fec034be72fb236a4d458a7249cab5aba3aa49b2)) - support unmanaged for ide plugins ([9746d20](https://togithub.com/snyk/snyk/commit/9746d20f9cee62c681df2532f11bac0444477b33)) ### [`v1.1054.0`](https://togithub.com/snyk/cli/releases/tag/v1.1054.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1053.0...v1.1054.0) ##### Bug Fixes - update snyk-docker-plugin ([a638be2](https://togithub.com/snyk/snyk/commit/a638be2caed93ff10d9812a2e2f78c3e0dd3ba77)) ### [`v1.1053.0`](https://togithub.com/snyk/cli/releases/tag/v1.1053.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1052.0...v1.1053.0) ##### Bug Fixes - certificate issue for golang plugin ([540b32c](https://togithub.com/snyk/snyk/commit/540b32c36a8851b686eb5d9f684b4ebd6775b1bf)) ### [`v1.1052.0`](https://togithub.com/snyk/cli/releases/tag/v1.1052.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1051.0...v1.1052.0) ##### Features - improve errors for cloud context ([0ddc517](https://togithub.com/snyk/snyk/commit/0ddc51731acb3e5090fd3b0a69e95bd9567ab000)) ### [`v1.1051.0`](https://togithub.com/snyk/cli/releases/tag/v1.1051.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1050.0...v1.1051.0) ##### Bug Fixes - apps create command ([8544c06](https://togithub.com/snyk/snyk/commit/8544c0610f94e4633dbb416b53e0400e2939024b)) ### [`v1.1050.0`](https://togithub.com/snyk/cli/releases/tag/v1.1050.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1049.0...v1.1050.0) ##### Bug Fixes - remove allow analytics check for share results ([4bac957](https://togithub.com/snyk/snyk/commit/4bac9570accf35e479ca30d4c1b9ae99509f9e56)) ### [`v1.1049.0`](https://togithub.com/snyk/cli/releases/tag/v1.1049.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1048.0...v1.1049.0) ##### Features - Upgrade snyk-iac-test to v0.36.2 ([d37581b](https://togithub.com/snyk/snyk/commit/d37581bf9d6c419df09bd1313870e6e7702c6dfc)) ### [`v1.1048.0`](https://togithub.com/snyk/cli/releases/tag/v1.1048.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1047.0...v1.1048.0) ##### Bug Fixes - in sbt plugin inspect: filter out configs that are not public ([a1df508](https://togithub.com/snyk/snyk/commit/a1df508fb51428a274ce305d9daab3246101b3a8)) ### [`v1.1047.0`](https://togithub.com/snyk/snyk/compare/v1.1046.0...v1.1047.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1046.0...v1.1047.0) ### [`v1.1046.0`](https://togithub.com/snyk/cli/releases/tag/v1.1046.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1045.0...v1.1046.0) ##### Bug Fixes - rollback [#​4105](https://togithub.com/snyk/snyk/issues/4105) ([6fec157](https://togithub.com/snyk/snyk/commit/6fec1570429f8560a665a1c56019120db36c3310)) ### [`v1.1045.0`](https://togithub.com/snyk/cli/releases/tag/v1.1045.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1044.0...v1.1045.0) ##### Bug Fixes - check of incorrect environment variable ([1c863bb](https://togithub.com/snyk/snyk/commit/1c863bb44d5f671f0f4068448d4ad2e02c6f7fb6)) - do not proxy traffic to sockets ([a2cbec3](https://togithub.com/snyk/snyk/commit/a2cbec35c381db560441952485c6c83b8bc9727a)) ##### Features - disable container app scan with feature flag ([39fcaf2](https://togithub.com/snyk/snyk/commit/39fcaf277a354e8c415bab24f0e4c7133e39c203)) ### [`v1.1044.0`](https://togithub.com/snyk/cli/releases/tag/v1.1044.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1043.0...v1.1044.0) ##### Bug Fixes - add innerError to CLI analytics as error-details ([c6e92d9](https://togithub.com/snyk/snyk/commit/c6e92d92fab8ff576b75bffb27c8880971389aff)) - use body in 403 error innerError if body.stack is empty ([2eb1a24](https://togithub.com/snyk/snyk/commit/2eb1a24e919a5dcc919d0ebdf2f61a053eede949)) ##### Features - Upgrade snyk-iac-test to v0.36.1 ([53dfb7a](https://togithub.com/snyk/snyk/commit/53dfb7a7cc3bd1e561e66b2646c908b03d41a8ef)) ### [`v1.1043.0`](https://togithub.com/snyk/cli/releases/tag/v1.1043.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1042.0...v1.1043.0) ##### Bug Fixes - relax conditions for sbt plugin inspect ([a201a61](https://togithub.com/snyk/snyk/commit/a201a616358d15c56e43ab76a52ce24862bb6582)) ### [`v1.1042.0`](https://togithub.com/snyk/cli/releases/tag/v1.1042.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1041.0...v1.1042.0) ##### Bug Fixes - Errors from snyk-iac-test should not be swallowed ([b02372d](https://togithub.com/snyk/snyk/commit/b02372d66ceb2b23387ae983218bd07a01508b73)) ##### Features - **[@​snyk/fix](https://togithub.com/snyk/fix):** pipenv support for version 2022.\* ([74d0829](https://togithub.com/snyk/snyk/commit/74d08292b00d0e8ee58c981371d3dbfebd7321e7)) ### [`v1.1041.0`](https://togithub.com/snyk/cli/releases/tag/v1.1041.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1040.0...v1.1041.0) ##### Bug Fixes - reduce scala script output size ([f3ea1ce](https://togithub.com/snyk/snyk/commit/f3ea1ceac7f19c1b785daeb449709881c3fc3497)) ### [`v1.1040.0`](https://togithub.com/snyk/cli/releases/tag/v1.1040.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1039.0...v1.1040.0) ##### Bug Fixes - Invoke snyk-iac-test asynchronously ([1a5e734](https://togithub.com/snyk/snyk/commit/1a5e73471f30a5b208523685c6527a91ab9cafd3)) ### [`v1.1039.0`](https://togithub.com/snyk/cli/releases/tag/v1.1039.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1038.0...v1.1039.0) ##### Features - new cloud context flag --snyk-cloud-environment ([e5528cf](https://togithub.com/snyk/snyk/commit/e5528cf64638cb8943abd42f5bf57f387b53dfac)) - Upgrade snyk-iac-test to v0.35.1 ([73da9cb](https://togithub.com/snyk/snyk/commit/73da9cb2441d985b8bed374b45a12fe6d96a67eb)) ### [`v1.1038.0`](https://togithub.com/snyk/cli/releases/tag/v1.1038.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1037.0...v1.1038.0) ##### Features - add error code to iac json output ([4d08086](https://togithub.com/snyk/snyk/commit/4d080861c9c83e8b3ca1e1a7720840e8d3809b46)) ### [`v1.1037.0`](https://togithub.com/snyk/cli/releases/tag/v1.1037.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1036.0...v1.1037.0) ##### Bug Fixes - fixing typo to trigger a failed release ([6f49a08](https://togithub.com/snyk/snyk/commit/6f49a0889240f2cd6b6fc15f5cdb3a0f5c2e35bc)) ### [`v1.1036.0`](https://togithub.com/snyk/cli/releases/tag/v1.1036.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1035.0...v1.1036.0) #### What's Changed - chore: preserve system proxy in golang cli by [@​PeterSchafer](https://togithub.com/PeterSchafer) in [https://github.com/snyk/cli/pull/4159](https://togithub.com/snyk/cli/pull/4159) - feat: Upgrade snyk-iac-test to v0.34.1 by [@​francescomari](https://togithub.com/francescomari) in [https://github.com/snyk/cli/pull/4160](https://togithub.com/snyk/cli/pull/4160) - restore system proxy for describe by [@​moadibfr](https://togithub.com/moadibfr) in [https://github.com/snyk/cli/pull/4158](https://togithub.com/snyk/cli/pull/4158) **Full Changelog**: https://github.com/snyk/cli/compare/v1.1035.0...v1.1036.0 ### [`v1.1035.0`](https://togithub.com/snyk/cli/releases/tag/v1.1035.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1034.0...v1.1035.0) ##### Features - do not download bundle in cli ([d339015](https://togithub.com/snyk/snyk/commit/d3390157ad197ccc57447351d2a25d392c6392f1)) - IaC --report smoke testing ([48f2e93](https://togithub.com/snyk/snyk/commit/48f2e9366c1e43e3e070e51ef8333ae087e79286)) ### [`v1.1034.0`](https://togithub.com/snyk/cli/releases/tag/v1.1034.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1033.0...v1.1034.0) ##### Features - Upgrade snyk-iac-test to v0.33.5 ([c318f06](https://togithub.com/snyk/snyk/commit/c318f0654235f41e86c9e16c36b94728852a3c6e)) ### [`v1.1033.0`](https://togithub.com/snyk/cli/releases/tag/v1.1033.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1032.0...v1.1033.0) ##### Features - Upgrade snyk-iac-test to v0.33.4 ([ea931d1](https://togithub.com/snyk/snyk/commit/ea931d154d1710a3f9e3ee47a1d1c8a1dc9776b0)) ### [`v1.1032.0`](https://togithub.com/snyk/cli/releases/tag/v1.1032.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1031.0...v1.1032.0) ##### Features - Upgrade snyk-iac-test to v0.33.3 ([f0ada01](https://togithub.com/snyk/snyk/commit/f0ada010dfd63c2b29f5d489a10df85a9baca6f6)) ### [`v1.1031.0`](https://togithub.com/snyk/cli/releases/tag/v1.1031.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1030.0...v1.1031.0) ##### Bug Fixes - identify gradle projects by path not name ([284c8aa](https://togithub.com/snyk/snyk/commit/284c8aaab48dc71335ee3123bcf21d34b05d822f)) ### [`v1.1030.0`](https://togithub.com/snyk/cli/releases/tag/v1.1030.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1029.0...v1.1030.0) ##### Features - use in_progress in unmanaged resp. ([84a1bb3](https://togithub.com/snyk/snyk/commit/84a1bb3ccaf541e2d4ffc8f07594cc80d6fa688a)) ### [`v1.1029.0`](https://togithub.com/snyk/snyk/compare/v1.1028.0...v1.1029.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1028.0...v1.1029.0) ### [`v1.1028.0`](https://togithub.com/snyk/snyk/compare/v1.1027.0...v1.1028.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1027.0...v1.1028.0) ### [`v1.1027.0`](https://togithub.com/snyk/cli/releases/tag/v1.1027.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1026.0...v1.1027.0) ##### Features - Upgrade snyk-iac-test to v0.33.1 ([8f49d27](https://togithub.com/snyk/snyk/commit/8f49d27d052b96789aeed1af605d88c6d93f08b3)) ### [`v1.1026.0`](https://togithub.com/snyk/cli/releases/tag/v1.1026.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1025.0...v1.1026.0) ##### Bug Fixes - remove reachability from plugins ([cdebec7](https://togithub.com/snyk/snyk/commit/cdebec7f8a67ceb8ee2b29ca614de7d3976af569)) ### [`v1.1025.0`](https://togithub.com/snyk/cli/releases/tag/v1.1025.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1024.0...v1.1025.0) ##### Features - update code client ([a30958c](https://togithub.com/snyk/snyk/commit/a30958ceddf9014afbce424f50efcabea6b01d5f)) ### [`v1.1024.0`](https://togithub.com/snyk/snyk/compare/v1.1023.0...v1.1024.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1023.0...v1.1024.0) ### [`v1.1023.0`](https://togithub.com/snyk/cli/releases/tag/v1.1023.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1022.0...v1.1023.0) ##### Bug Fixes - Ignored issues count displays "undefined" ([962df51](https://togithub.com/snyk/snyk/commit/962df5157f7b0aecba63648982a940851fdc205e)) ### [`v1.1022.0`](https://togithub.com/snyk/cli/releases/tag/v1.1022.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1021.0...v1.1022.0) ##### Bug Fixes - do not check stderr output in IaC smoke tests ([55cbba0](https://togithub.com/snyk/snyk/commit/55cbba0e79e9164bf21e47cf67af563d2ac0c20f)) ##### Features - use short link to the Integrated IaC docs ([8fd823d](https://togithub.com/snyk/snyk/commit/8fd823d2af4ebbcea00b159c399711692135c3e0)) ### [`v1.1021.0`](https://togithub.com/snyk/cli/releases/tag/v1.1021.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1020.0...v1.1021.0) ##### Bug Fixes - remove gradle matching config error ([401c0f0](https://togithub.com/snyk/snyk/commit/401c0f06b17a52f96bfce4587249b28f9796fadd)) ##### Features - add flag to exclude app vulnerabilities ([5d704e2](https://togithub.com/snyk/snyk/commit/5d704e27a955edc81967efb08720ca9f3dbc7b85)) - print warning message on app-vulns enablement ([9216c49](https://togithub.com/snyk/snyk/commit/9216c49e5126decdbeee2dfd34bbe27f2fc7f7e3)) ### [`v1.1020.0`](https://togithub.com/snyk/snyk/compare/v1.1019.0...v1.1020.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1019.0...v1.1020.0) ### [`v1.1019.0`](https://togithub.com/snyk/cli/releases/tag/v1.1019.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1018.0...v1.1019.0) ##### Bug Fixes - use [@​snyk/child-process](https://togithub.com/snyk/child-process) package without shell ([2d8845d](https://togithub.com/snyk/snyk/commit/2d8845d29525620b46c455470168c228a174e12d)) ##### Features - **windows:** renew code signing certificate ([ff063f1](https://togithub.com/snyk/snyk/commit/ff063f10c3b0ab8c42d82b33eb2988cee41e8a08)) ### [`v1.1018.0`](https://togithub.com/snyk/cli/releases/tag/v1.1018.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1017.0...v1.1018.0) ##### Features - add an info message to the new iac test command ([533db99](https://togithub.com/snyk/snyk/commit/533db993e222ddc2737e1354512dbd2ac5c817c9)) ### [`v1.1017.0`](https://togithub.com/snyk/cli/releases/tag/v1.1017.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1016.0...v1.1017.0) ##### Features - Update feature gating for new IaC Integrated experience ([72bed38](https://togithub.com/snyk/snyk/commit/72bed38b42885496f390a8ed07b2f1a8f60c4d0e)) ### [`v1.1016.0`](https://togithub.com/snyk/cli/releases/tag/v1.1016.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1015.0...v1.1016.0) ##### Bug Fixes - unmanaged scan unknown archives ([5821ed4](https://togithub.com/snyk/snyk/commit/5821ed4f514cbb0a80c05cd6bb137d2d24a48b06)) ### [`v1.1015.0`](https://togithub.com/snyk/cli/releases/tag/v1.1015.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1014.0...v1.1015.0) ##### Features - refactor and add tests on gradle plugin ([239d4ab](https://togithub.com/snyk/snyk/commit/239d4abdf3ab495ea09d80a2449706d113748f3a)) ### [`v1.1014.0`](https://togithub.com/snyk/cli/releases/tag/v1.1014.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1013.0...v1.1014.0) ##### Features - container support for deleted files ([cc8edfb](https://togithub.com/snyk/snyk/commit/cc8edfb071103c241adf3a0f767d412822477993)) ### [`v1.1013.0`](https://togithub.com/snyk/cli/releases/tag/v1.1013.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1012.0...v1.1013.0) ##### Features - new version to update url docs link ([bd063e3](https://togithub.com/snyk/snyk/commit/bd063e32c5600febe5c119ad9d77a4e74f3c2e25)) ### [`v1.1012.0`](https://togithub.com/snyk/cli/releases/tag/v1.1012.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1011.0...v1.1012.0) ##### Features - pass snykHttpClient to plugin.inspect ([17b1273](https://togithub.com/snyk/snyk/commit/17b1273a4f2358ade99bfe14b523bfcc907b0c2f)) ### [`v1.1011.0`](https://togithub.com/snyk/cli/releases/tag/v1.1011.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1010.0...v1.1011.0) ##### Bug Fixes - improve cpp-plugin performance on windows ([b5f6770](https://togithub.com/snyk/snyk/commit/b5f677075e263bab8d60a37958479927f1bced55)) ### [`v1.1010.0`](https://togithub.com/snyk/cli/releases/tag/v1.1010.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1009.0...v1.1010.0) ##### Bug Fixes - added check for existing key in loop ([04c00bc](https://togithub.com/snyk/snyk/commit/04c00bc9be3001340c20e1ae0f2d96a0ab9ab13d)) ### [`v1.1009.0`](https://togithub.com/snyk/snyk/compare/v1.1008.0...v1.1009.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1008.0...v1.1009.0) ### [`v1.1008.0`](https://togithub.com/snyk/snyk/compare/v1.1007.0...v1.1008.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1007.0...v1.1008.0) ### [`v1.1007.0`](https://togithub.com/snyk/cli/releases/tag/v1.1007.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1006.0...v1.1007.0) ##### Bug Fixes - upgrade go-httpauth to support basic auth ([875f0e9](https://togithub.com/snyk/snyk/commit/875f0e98651892d77aabdc23296b5edf4e05a712)) ##### Features - add unmanaged service test call ff ([55b6fbb](https://togithub.com/snyk/snyk/commit/55b6fbb7dfeba58c0d20d82eddb9720faf7b0fd9)) ### [`v1.1006.0`](https://togithub.com/snyk/cli/releases/tag/v1.1006.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1005.0...v1.1006.0) ##### Features - show Cloud Issues URL when sharing results with snyk iac test ([9e1f2d7](https://togithub.com/snyk/snyk/commit/9e1f2d7385a394623952fa8e15fb1c0ba06c710d)) ### [`v1.1005.0`](https://togithub.com/snyk/cli/releases/tag/v1.1005.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1004.0...v1.1005.0) ##### Bug Fixes - iac test result undefined ([c1e289d](https://togithub.com/snyk/snyk/commit/c1e289d4af19be1fd8c56a9f782b47eb4cebd836)) - update snyk-docker-plugin to fix CGo binaries issue ([4db2a46](https://togithub.com/snyk/snyk/commit/4db2a46232ef43afee23f4c364c9fb4e9849a93f)), closes [#​456](https://togithub.com/snyk/snyk/issues/456) ##### Features - add support for an HTTP proxy when using snyk-iac-test ([3f82971](https://togithub.com/snyk/snyk/commit/3f829711918dead4f1f54ff13e14fb7bff316128)) ### [`v1.1004.0`](https://togithub.com/snyk/cli/releases/tag/v1.1004.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1003.0...v1.1004.0) ##### Features - share results with the Cloud API ([17c7bac](https://togithub.com/snyk/snyk/commit/17c7bac2e9f6096773d0936b9b2d82391955103b)) ### [`v1.1003.0`](https://togithub.com/snyk/cli/releases/tag/v1.1003.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1002.0...v1.1003.0) ##### Bug Fixes - container python app scan performance issues ([a8732a6](https://togithub.com/snyk/snyk/commit/a8732a616ac3c85948a7b36ee500d719a7c308f2)) ##### Features - can override IaC experimental bundle ([7da75f1](https://togithub.com/snyk/snyk/commit/7da75f14f5ea71a35bbf58e74c2bfb9eda433179)) ### [`v1.1002.0`](https://togithub.com/snyk/cli/releases/tag/v1.1002.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1001.0...v1.1002.0) ##### Features - IaC context-suppressed issue count ([bb18d47](https://togithub.com/snyk/snyk/commit/bb18d47b8007f4be03dfb17a84bcbf6e100ca4df)) ### [`v1.1001.0`](https://togithub.com/snyk/cli/releases/tag/v1.1001.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.1000.0...v1.1001.0) ##### Features - pass the org public ID to snyk-iac-test ([e70e43d](https://togithub.com/snyk/snyk/commit/e70e43d8a2b5899dbda05882501603bf71186dbf)) ### [`v1.1000.0`](https://togithub.com/snyk/cli/releases/tag/v1.1000.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.999.0...v1.1000.0) ##### Bug Fixes - container python app scan errors ([91ce029](https://togithub.com/snyk/snyk/commit/91ce0291a238cec88d993f2034f30dd33fe58aef)) ### [`v1.999.0`](https://togithub.com/snyk/cli/releases/tag/v1.999.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.998.0...v1.999.0) ##### Features - container Go binary scan ([47af5ca](https://togithub.com/snyk/snyk/commit/47af5cab7473a742d83b59ae7016ba78e63763b5)), closes [#​447](https://togithub.com/snyk/snyk/issues/447) ### [`v1.998.0`](https://togithub.com/snyk/cli/releases/tag/v1.998.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.997.0...v1.998.0) ##### Features - cloud context for IaC tests ([b9c1a10](https://togithub.com/snyk/snyk/commit/b9c1a10a667fc6c9b2920a170b44e333fb2f6cd1)) - container python app scan ([3609d7d](https://togithub.com/snyk/snyk/commit/3609d7db74381b63c17d1f62f5d3fbc9ca385f96)) - create temp filepath for iac engine to write results ([12d8e57](https://togithub.com/snyk/snyk/commit/12d8e57d367fbac93b45662b6a158e26f3657bd0)) - custom message for IaC cloud context errors ([b5833a2](https://togithub.com/snyk/snyk/commit/b5833a27811128f6b174c276b16af55491b087dc)) ### [`v1.997.0`](https://togithub.com/snyk/cli/releases/tag/v1.997.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.996.0...v1.997.0) ##### Bug Fixes - For Gradle multi-module projects filter subprojects on unique path not name ([db21498](https://togithub.com/snyk/snyk/commit/db21498a9f628c0907abd4bbb41e0e988409f349)) ### [`v1.996.0`](https://togithub.com/snyk/cli/releases/tag/v1.996.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.995.0...v1.996.0) ##### Bug Fixes - bump golang plugin version ([8893f81](https://togithub.com/snyk/snyk/commit/8893f81c39ee66dc61454a6f9e0036dccd8d3b81)) ##### Features - add --var-file support ([537372d](https://togithub.com/snyk/snyk/commit/537372d26b05ca5c0f6a73fa6a6be3438e6c78fc)) ### [`v1.995.0`](https://togithub.com/snyk/cli/releases/tag/v1.995.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.994.0...v1.995.0) ##### Bug Fixes - matching configurations error on gradle version catalog ([20dcdae](https://togithub.com/snyk/snyk/commit/20dcdae8d097cc798a46df39b903cf00f9111e8c)) ### [`v1.994.0`](https://togithub.com/snyk/cli/releases/tag/v1.994.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.993.0...v1.994.0) ##### Bug Fixes - more IaC error codes ([e0227c3](https://togithub.com/snyk/snyk/commit/e0227c389d0215b52d28b4b0c43322f81503458f)) ##### Features - add custom severities to iac test config ([9d86574](https://togithub.com/snyk/snyk/commit/9d865740e2c9e95425516f817fb2be566f007253)) - add ignore count in the experimental version of iac test ([d390ca2](https://togithub.com/snyk/snyk/commit/d390ca2332d31895e35d9c72f357e57ced3bb9c9)) - Added support for depth-detection ([8cf1815](https://togithub.com/snyk/snyk/commit/8cf181582031466702aecd4cc0e39f64408dcef3)) ### [`v1.993.0`](https://togithub.com/snyk/cli/releases/tag/v1.993.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.992.0...v1.993.0) ##### Features - add scan flag support ([53951fc](https://togithub.com/snyk/snyk/commit/53951fcae8b804ba7d93caac7adbac2f3aad48bc)) ### [`v1.992.0`](https://togithub.com/snyk/cli/releases/tag/v1.992.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.991.0...v1.992.0) ##### Bug Fixes - `--target-name` bug ([3431f79](https://togithub.com/snyk/snyk/commit/3431f7979f4809a95470486a9952fea98951a33c)) - Spacing for issue descriptions with custom rules ([29b2fdb](https://togithub.com/snyk/snyk/commit/29b2fdb41f374f461b7d83831acc18ab9ac33f9d)) ### [`v1.991.0`](https://togithub.com/snyk/cli/releases/tag/v1.991.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.990.0...v1.991.0) ##### Features - add report summary ([d8e4ea8](https://togithub.com/snyk/snyk/commit/d8e4ea8d47587524e6e82e372173a10da2c07c2e)) - pass policy (.snyk) to iac-test via the config file. ([6d3ad76](https://togithub.com/snyk/snyk/commit/6d3ad7625bdb8fea908ab147522e6cce0669fb87)) ### [`v1.990.0`](https://togithub.com/snyk/cli/releases/tag/v1.990.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.989.0...v1.990.0) ##### Bug Fixes - none custom policies severity issues should be filtered out before sending them to registry ([4acacd2](https://togithub.com/snyk/snyk/commit/4acacd248b72d7c0366143199dbe85c8f6d70f6a)) ### [`v1.989.0`](https://togithub.com/snyk/cli/releases/tag/v1.989.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.988.0...v1.989.0) ##### Bug Fixes - downgrade snyk-go-plugin to 1.19.0 ([4643026](https://togithub.com/snyk/snyk/commit/4643026a0d2cd43cc6497b1d595252cfa5564148)) - increase buffer size ([8079fe3](https://togithub.com/snyk/snyk/commit/8079fe35861a4b88efb363cf746c9e33ebd238ca)) - update golang plugin ([a0e30d9](https://togithub.com/snyk/snyk/commit/a0e30d9bf6c8118e9f123448febef9ab5f8a7f2d)) - upgrade-docker-registry-v2-client ([275afb1](https://togithub.com/snyk/snyk/commit/275afb1a2ff5b9ec829a2b4b113bb241543209af)) ##### Features - pass remote-repo-url arg to snyk-iac-test ([18e8c87](https://togithub.com/snyk/snyk/commit/18e8c87dc5d3dff91b22fd894c37d0864333ed5d)) ### [`v1.988.0`](https://togithub.com/snyk/cli/releases/tag/v1.988.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.987.0...v1.988.0) ##### Bug Fixes - return exit code 3 when no resources can be found ([9d2e41f](https://togithub.com/snyk/snyk/commit/9d2e41f695b7aebf71e1a6b0b42497702380c4b2)) - upgrade docker-registry-v2-client lib ([374ba55](https://togithub.com/snyk/snyk/commit/374ba552c6b8356a9fc5f60ff08756c7bfb31d4b)) ##### Features - pass target-name arg to snyk-iac-test ([4352122](https://togithub.com/snyk/snyk/commit/4352122fc025fb32f0266acdf7498aebff00f6a9)) - stop caching rules ([71c866e](https://togithub.com/snyk/snyk/commit/71c866e52b76c1a23e193c6c1126d6c3ece0b7d5)) ### [`v1.987.0`](https://togithub.com/snyk/cli/releases/tag/v1.987.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.986.0...v1.987.0) ##### Bug Fixes - correct broken URLs for license issues ([8a46931](https://togithub.com/snyk/snyk/commit/8a469317bbf1efa1326f31d14e469b99972db275)) - Ensured the test spinner stops ([5d9d15f](https://togithub.com/snyk/snyk/commit/5d9d15f5d582dd93d8e7f8eaf9a90823f6610382)) ##### Features - remove reachability ([5500e25](https://togithub.com/snyk/snyk/commit/5500e25dfb047a49b87b003b962b9f288e0331a8)) - scan maven aggregate projects ([019bc45](https://togithub.com/snyk/snyk/commit/019bc458f0c1da234e4818263c0990f435cddb1f)) - share cache path with IaC plugin ([e254c0c](https://togithub.com/snyk/snyk/commit/e254c0c6dfc0437e76a1887373cc74d9a5879c6f)) - update snyk-iac-test to 0.18.1 ([379fe0c](https://togithub.com/snyk/snyk/commit/379fe0c4bd8945422f05376a9a85e03846ef6520)) ### [`v1.986.0`](https://togithub.com/snyk/cli/releases/tag/v1.986.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.985.0...v1.986.0) ##### Bug Fixes - wrong 2x count of iac issues with --report -multi-doc yaml ([06da34e](https://togithub.com/snyk/snyk/commit/06da34ee05364897bf9ae8ed4ab25c9a242efe71)) ### [`v1.985.0`](https://togithub.com/snyk/cli/releases/tag/v1.985.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.984.0...v1.985.0) ##### Bug Fixes - Fixed incomplete CC path when missing resource attributes ([6a4480c](https://togithub.com/snyk/snyk/commit/6a4480c0e25ff3bda80f56c15376fc07e9d16070)) - missing release in package version string ([dcb40ab](https://togithub.com/snyk/snyk/commit/dcb40abd340ad692642b7d57b3fbe99aa2a1be30)) - upgarde docker-registry-v2-client lib ([5de3cb1](https://togithub.com/snyk/snyk/commit/5de3cb1ed3758bd9c147eb741d82160685936bc3)) ##### Features - introduce —about flag to print attribution information ([60eaec8](https://togithub.com/snyk/snyk/commit/60eaec8bd90cdca11287dc4542a224a41d83d63e)) - pass projectTags arg to snyk-iac-test ([ae70c1e](https://togithub.com/snyk/snyk/commit/ae70c1e5f7687e75c07fbd6b37a345d597d5cd32)) ### [`v1.984.0`](https://togithub.com/snyk/snyk/compare/v1.983.0...v1.984.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.983.0...v1.984.0) ### [`v1.983.0`](https://togithub.com/snyk/cli/releases/tag/v1.983.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.982.0...v1.983.0) ##### Bug Fixes - use FormattedPath ([2ebfb71](https://togithub.com/snyk/snyk/commit/2ebfb7135b7f17991d6802eb4303f9d12f7bc177)) ##### Features - add project attributes support in --experimental ([08791f8](https://togithub.com/snyk/snyk/commit/08791f82c30a98c83870d8363740b895799afdd0)) - Implement AnyAuth Proxy Authentication support ([467b621](https://togithub.com/snyk/snyk/commit/467b621f886ebcf1122df230eb2a5b744beb6971)) ### [`v1.982.0`](https://togithub.com/snyk/cli/releases/tag/v1.982.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.981.0...v1.982.0) ##### Bug Fixes - upgrade docker plugin to improve stream parsing ([a59d8e4](https://togithub.com/snyk/snyk/commit/a59d8e4e85030980dad988789639273b2d0b2798)) ##### Features - pass configuration to snyk-iac-test ([6fb5992](https://togithub.com/snyk/snyk/commit/6fb599249faee68daa48a16cae5b9984ecc7ce59)) - upgrade snyk iac test to 0.13.1 ([ce7103e](https://togithub.com/snyk/snyk/commit/ce7103ee904b111fc64e3e50925c32ac71d14e08)) ### [`v1.981.0`](https://togithub.com/snyk/cli/releases/tag/v1.981.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.980.0...v1.981.0) ##### Bug Fixes - Add missing IaC issue props in JSON output ([da3a671](https://togithub.com/snyk/snyk/commit/da3a6710da061b551f76203efd02e65f31512a74)) ### [`v1.980.0`](https://togithub.com/snyk/cli/releases/tag/v1.980.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.979.0...v1.980.0) ##### Features - improve maven debug logging ([a0cdcfc](https://togithub.com/snyk/snyk/commit/a0cdcfc3bd5d19d8e4f204bcc1ec043a03ea175a)) ### [`v1.979.0`](https://togithub.com/snyk/cli/releases/tag/v1.979.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.978.0...v1.979.0) ##### Bug Fixes - handle gradle strict lock mode ([8905252](https://togithub.com/snyk/snyk/commit/890525290acab75f67eed9978e97b3a725ec9257)) ### [`v1.978.0`](https://togithub.com/snyk/cli/releases/tag/v1.978.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.977.0...v1.978.0) ##### Features - add SARIF support (CFG-1993) ([622c8f4](https://togithub.com/snyk/snyk/commit/622c8f424030ab181b461fbf51bdad2122550f03)) ### [`v1.977.0`](https://togithub.com/snyk/cli/releases/tag/v1.977.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.976.0...v1.977.0) ##### Bug Fixes - container app vulns json with experimental flag ([332d87b](https://togithub.com/snyk/snyk/commit/332d87bbb17590b1ffcc1a92c78b6ea363769208)) ##### Features - add deprecation message to test command ([7f191b5](https://togithub.com/snyk/snyk/commit/7f191b5fa63dc12232632b20351521d41f164477)) ### [`v1.976.0`](https://togithub.com/snyk/cli/releases/tag/v1.976.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.975.0...v1.976.0) ##### Features - improve comment handling for SBT scans ([cf862b9](https://togithub.com/snyk/snyk/commit/cf862b94b1d0101ff01068a8ca0e117021aec7d9)) ### [`v1.975.0`](https://togithub.com/snyk/cli/releases/tag/v1.975.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.974.0...v1.975.0) ##### Features - add test summary section to the experimental output ([b708086](https://togithub.com/snyk/snyk/commit/b7080861cc166689226df8f4c4027c68157cfd86)) ### [`v1.974.0`](https://togithub.com/snyk/cli/releases/tag/v1.974.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.973.0...v1.974.0) ##### Features - add 'target-name' flag support ([6305c3d](https://togithub.com/snyk/snyk/commit/6305c3d9404a16391081e61711605cdec5e823fd)) ### [`v1.973.0`](https://togithub.com/snyk/cli/releases/tag/v1.973.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.972.0...v1.973.0) ##### Bug Fixes - vuln links using demunge ([01154c9](https://togithub.com/snyk/snyk/commit/01154c9af0e1604519d962198379ec6c7ebe23c5)) ##### Features - add --remote-repo-url to "iac test" ([2a12048](https://togithub.com/snyk/snyk/commit/2a1204864666c5610f5a7b340a974ee22e72bdf2)) - update general vuln descriptions to point to pvdb ([ad80d74](https://togithub.com/snyk/snyk/commit/ad80d74a8af6434c5a77587bc784bf6113abf7dd)) - update spotlight vuln descriptions ([f536c9d](https://togithub.com/snyk/snyk/commit/f536c9d70d66b9bef277fa9debd2cdbc3caf9c94)) ### [`v1.972.0`](https://togithub.com/snyk/cli/releases/tag/v1.972.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.971.0...v1.972.0) ##### Bug Fixes - handle errors from /share-results ([5871079](https://togithub.com/snyk/snyk/commit/58710794dbcb5c146d06cf04bcb6e9eb4e9793c5)) ##### Features - Add support for severity threshold ([6833389](https://togithub.com/snyk/snyk/commit/68333892fce93cdcfdc22dcf5f60b4b7bcddd275)) ### [`v1.971.0`](https://togithub.com/snyk/cli/releases/tag/v1.971.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.970.0...v1.971.0) ##### Features - snyk-iac-test error handling ([3b3fa89](https://togithub.com/snyk/snyk/commit/3b3fa89bcded06631e9db30151fc0c8c02d685fb)) ### [`v1.970.0`](https://togithub.com/snyk/snyk/compare/v1.969.0...v1.970.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.969.0...v1.970.0) ### [`v1.969.0`](https://togithub.com/snyk/cli/releases/tag/v1.969.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.968.0...v1.969.0) ##### Features - officially support Gradle 7 scanning ([314dc96](https://togithub.com/snyk/snyk/commit/314dc96c2dfc677558abc6f644338544926d64c7)) ### [`v1.968.0`](https://togithub.com/snyk/cli/releases/tag/v1.968.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.967.0...v1.968.0) ##### Features - remove support for paths outside the current working directory ([5ca35c1](https://togithub.com/snyk/snyk/commit/5ca35c1d36760d3b71e80e1561cea6a1b1344786)) ### [`v1.967.0`](https://togithub.com/snyk/cli/releases/tag/v1.967.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.966.0...v1.967.0) ##### Bug Fixes - bump snyk docker plugin version golang fixes ([8d55bcd](https://togithub.com/snyk/snyk/commit/8d55bcd4ed0241d93e54d05fda2d375c111f2b7e)), closes [#​3433](https://togithub.com/snyk/snyk/issues/3433) ### [`v1.966.0`](https://togithub.com/snyk/cli/releases/tag/v1.966.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.965.0...v1.966.0) ##### Bug Fixes - bump cloud-config-parser ([38502ed](https://togithub.com/snyk/snyk/commit/38502ed6bf0a95527edc724e21b18cad1fd84a97)) ### [`v1.965.0`](https://togithub.com/snyk/cli/releases/tag/v1.965.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.964.0...v1.965.0) ##### Bug Fixes - return paths for files that errrored (IaC) ([d53afde](https://togithub.com/snyk/snyk/commit/d53afdec246710c7df325ce6ccaabad08269354d)) ### [`v1.964.0`](https://togithub.com/snyk/cli/releases/tag/v1.964.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.963.0...v1.964.0) ##### Features - add JSON support ([4c636da](https://togithub.com/snyk/snyk/commit/4c636da22b542ee8a9ec898caa2405f4a32d531e)) - bump snyk-iac-test version ([0599c71](https://togithub.com/snyk/snyk/commit/0599c71fa391ede49d77c29bbc5706ea284a8b59)) - improve Snyk API URL configuration ([5a0bcbe](https://togithub.com/snyk/snyk/commit/5a0bcbeecf8017a86016d1ccea7d0b429cfb834b)) ### [`v1.963.0`](https://togithub.com/snyk/cli/releases/tag/v1.963.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.962.0...v1.963.0) ##### Bug Fixes - cli output adjustment ([b8e7f65](https://togithub.com/snyk/snyk/commit/b8e7f65dac557a4c6eca40b92207869a0a87a8d5)) ### [`v1.962.0`](https://togithub.com/snyk/cli/releases/tag/v1.962.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.961.0...v1.962.0) ##### Bug Fixes - typo in IaC v2 --report output ([a22ab2e](https://togithub.com/snyk/snyk/commit/a22ab2e5ad664d016dc79a08e4f806a7e7f381cc)) ##### Features - container json response with app vulns ([8aba337](https://togithub.com/snyk/snyk/commit/8aba337bbf01d7e6c92bd27aa3b2bab3235ebd27)) ### [`v1.961.0`](https://togithub.com/snyk/cli/releases/tag/v1.961.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.960.0...v1.961.0) ##### Bug Fixes - move checkPaths() function out of main() ([503d64c](https://togithub.com/snyk/snyk/commit/503d64ca556ea32cfd71667ea7e99eb04d4a14d4)) ### [`v1.960.0`](https://togithub.com/snyk/cli/releases/tag/v1.960.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.959.0...v1.960.0) ##### Bug Fixes - fix parser error in tfplan parser ([1976175](https://togithub.com/snyk/snyk/commit/1976175ed24209ff22a8b8df9a7ae32f3b2b9461)) ### [`v1.959.0`](https://togithub.com/snyk/cli/releases/tag/v1.959.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.958.0...v1.959.0) ##### Bug Fixes - \--experimental acceptance test ([bb0665a](https://togithub.com/snyk/snyk/commit/bb0665a665e2aeebb4492ced16f3fd66ceb650ef)) - isArchive() ([52b63a5](https://togithub.com/snyk/snyk/commit/52b63a5e6e112d7786ed899899523015c9420790)) - sarif output for iac ([76bbfb9](https://togithub.com/snyk/snyk/commit/76bbfb9d1fc91c133c2cff2440f0108c67cf8229)) ##### Features - download rules bundle ([c86ebf2](https://togithub.com/snyk/snyk/commit/c86ebf2d439ff9860f859e6927975c4c708b18b4)) ### [`v1.958.0`](https://togithub.com/snyk/cli/releases/tag/v1.958.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.957.0...v1.958.0) ##### Bug Fixes - bump driftctl ([dae3c8e](https://togithub.com/snyk/snyk/commit/dae3c8e6d32f5a62d1943f419e428e3095fd10bb)) - reduce default snyk-gradle-plugin logging ([6e26bdc](https://togithub.com/snyk/snyk/commit/6e26bdc6e750d3bf1042e1303acb2fdea4faf669)) ### [`v1.957.0`](https://togithub.com/snyk/cli/releases/tag/v1.957.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.956.0...v1.957.0) ##### Bug Fixes - wrong dependencyCount in support of snyk-to-html ([1065dd9](https://togithub.com/snyk/snyk/commit/1065dd9abbd266e5c1471a22b2b7b874bf672f29)) ### [`v1.956.0`](https://togithub.com/snyk/cli/releases/tag/v1.956.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.955.0...v1.956.0) ##### Bug Fixes - support HTTP(S) proxies in iac-test ([3ac3ad0](https://togithub.com/snyk/snyk/commit/3ac3ad08cf7d23ed3d7461587d6a441937f5b0ff)) ### [`v1.955.0`](https://togithub.com/snyk/cli/releases/tag/v1.955.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.954.0...v1.955.0) ##### Bug Fixes - also add HTTP_PROXY environment variable ([78d0602](https://togithub.com/snyk/snyk/commit/78d0602a2efc700084c5f05a3105c8124e0daf0e)) ##### Features - add support for requirements.txt files with BOM encoding ([d31974f](https://togithub.com/snyk/snyk/commit/d31974f735acd6bc25cc504a4cd4abed4126b189)) - support for unmanaged snyk-to-html ([83b4f6a](https://togithub.com/snyk/snyk/commit/83b4f6ae240750ddad824c8d9427db8601b4cd4d)) ### [`v1.954.0`](https://togithub.com/snyk/cli/releases/tag/v1.954.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.953.0...v1.954.0) ##### Features - add additinal arguments ability for go projects ([7c915d4](https://togithub.com/snyk/snyk/commit/7c915d4870ffb60fdf043b768facf931e40f10dc)) ### [`v1.953.0`](https://togithub.com/snyk/cli/releases/tag/v1.953.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.952.0...v1.953.0) ##### Features - remove gradle-accept-legacy-config-roles flag ([b4164e8](https://togithub.com/snyk/snyk/commit/b4164e8c30abe2831710bbb244237914802d328c)) ### [`v1.952.0`](https://togithub.com/snyk/cli/releases/tag/v1.952.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.951.0...v1.952.0) ##### Bug Fixes - cwd error ([b17ed2c](https://togithub.com/snyk/snyk/commit/b17ed2cd92a96ed7a33cb42b6777cfa3bd640f88)) ### [`v1.951.0`](https://togithub.com/snyk/cli/releases/tag/v1.951.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.950.0...v1.951.0) ##### Features - remove report command from snyk iac ([9cd5813](https://togithub.com/snyk/snyk/commit/9cd5813f56c2c98b42558a04f3d4debf26dddf82)) ### [`v1.950.0`](https://togithub.com/snyk/cli/releases/tag/v1.950.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.949.0...v1.950.0) ##### Features - prune across Gradle dep-graph ([44f75ff](https://togithub.com/snyk/snyk/commit/44f75ff624e52c22a962e7894afb78f37156b70d)) ### [`v1.949.0`](https://togithub.com/snyk/cli/releases/tag/v1.949.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.948.0...v1.949.0) ##### Bug Fixes - include the custom rules warning if feature flag is not enabled ([44e892b](https://togithub.com/snyk/snyk/commit/44e892b192f4a668040dc9679a1254465e9d3181)) ### [`v1.948.0`](https://togithub.com/snyk/cli/releases/tag/v1.948.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.947.0...v1.948.0) ##### Features - upgrade to snyk-docker-plugin@4.38.0 ([5b66290](https://togithub.com/snyk/snyk/commit/5b66290c00b6ab8b8061100acbdd0cc61073eb93)) ### [`v1.947.0`](https://togithub.com/snyk/cli/releases/tag/v1.947.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.946.0...v1.947.0) ##### Bug Fixes - IaC issue info when impact or description are missing ([e785a64](https://togithub.com/snyk/snyk/commit/e785a644223e0a39afd01a9aa0dfdbd09b3d1ad8)) - remove warning message from iac --report ([b1aee5d](https://togithub.com/snyk/snyk/commit/b1aee5d9dfd77d1648919e0223e6602bc9e4bfc1)) ##### Features - improve error message for iac describe ([c58b5af](https://togithub.com/snyk/snyk/commit/c58b5afc73d023b379a87f1262580da07af8f7f3)) ### [`v1.946.0`](https://togithub.com/snyk/snyk/compare/v1.945.0...v1.946.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.945.0...v1.946.0) ### [`v1.945.0`](https://togithub.com/snyk/cli/releases/tag/v1.945.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.944.0...v1.945.0) ##### Features - enable TF Vars Support for all ([eedd239](https://togithub.com/snyk/snyk/commit/eedd239df648c5b9098e69487a3771a6fae23f99)) ### [`v1.944.0`](https://togithub.com/snyk/snyk/compare/v1.943.0...v1.944.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.943.0...v1.944.0) ### [`v1.943.0`](https://togithub.com/snyk/cli/releases/tag/v1.943.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.942.0...v1.943.0) ##### Features - detect JARs in WARs files inside containers ([2924955](https://togithub.com/snyk/snyk/commit/292495539d62fc745124c7d4409ff71379357348)) ### [`v1.942.0`](https://togithub.com/snyk/snyk/compare/v1.941.0...v1.942.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.941.0...v1.942.0) ### [`v1.941.0`](https://togithub.com/snyk/snyk/compare/v1.940.0...v1.941.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.940.0...v1.941.0) ### [`v1.940.0`](https://togithub.com/snyk/cli/releases/tag/v1.940.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.939.0...v1.940.0) ##### Bug Fixes - maven scan all unmanaged ([2c543e3](https://togithub.com/snyk/snyk/commit/2c543e3c814ee55c4f1bcfa060fcb3b2377c435c)) ### [`v1.939.0`](https://togithub.com/snyk/cli/releases/tag/v1.939.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.938.0...v1.939.0) ##### Features - wrap new IaC output with a new FF ([12e66bf](https://togithub.com/snyk/snyk/commit/12e66bf3f3fedb250adc24a6010685a37e4f8958)) ### [`v1.938.0`](https://togithub.com/snyk/cli/releases/tag/v1.938.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.937.0...v1.938.0) ##### Bug Fixes - maven nested module scans ([9cba63a](https://togithub.com/snyk/snyk/commit/9cba63a2e5fc7c798cb91d98f4160558aebc4fea)) ##### Features - validate custom rules ([daed58e](https://togithub.com/snyk/snyk/commit/daed58ebea7d1d8e10cdf61ca068c4bd4b834b11)) ### [`v1.937.0`](https://togithub.com/snyk/cli/releases/tag/v1.937.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.936.0...v1.937.0) ##### Bug Fixes - remove driftctl brand in drift html output ([3958fd1](https://togithub.com/snyk/snyk/commit/3958fd10f0f7130e8692f579226b7b58846c2182)) ### [`v1.936.0`](https://togithub.com/snyk/cli/releases/tag/v1.936.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.935.0...v1.936.0) ##### Bug Fixes - (iac) last error does not override previous ([d9e3449](https://togithub.com/snyk/snyk/commit/d9e3449fbba17530e10c90fbe8026d4e0786720a)) ##### Features - unmanaged support for remote-repo-url ([646c976](https://togithub.com/snyk/snyk/commit/646c97606b7beab0c96d503648688c5c9f8fe746)) ### [`v1.935.0`](https://togithub.com/snyk/cli/releases/tag/v1.935.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.934.0...v1.935.0) ##### Bug Fixes - unmanaged cancelled jobs ([dca7769](https://togithub.com/snyk/snyk/commit/dca7769054879d70c14a7a248ccb07fb03ec6e77)) ### [`v1.934.0`](https://togithub.com/snyk/cli/releases/tag/v1.934.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.933.0...v1.934.0) ##### Features - include thrown errors in IaC failures section ([571d3b8](https://togithub.com/snyk/snyk/commit/571d3b8f6174018d53d859e0a7293da934140e9b)) ### [`v1.933.0`](https://togithub.com/snyk/cli/releases/tag/v1.933.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.932.0...v1.933.0) ##### Features - container php app scan ([efbae42](https://togithub.com/snyk/snyk/commit/efbae425630fe02d90bff45c3d79a7ac26d8fc9a)) ### [`v1.932.0`](https://togithub.com/snyk/cli/releases/tag/v1.932.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.931.0...v1.932.0) ##### Bug Fixes - allow endpoint to be modified when invalid ([a4bc484](https://togithub.com/snyk/snyk/commit/a4bc484ac07bf4331a1f59183a9d563eadc8a1cc)) - CLI output styling ([0e31b8e](https://togithub.com/snyk/snyk/commit/0e31b8e463e8dccefe907f773f9c63c487c7b9fa)) ### [`v1.931.0`](https://togithub.com/snyk/cli/releases/tag/v1.931.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.930.0...v1.931.0) ##### Bug Fixes - ignore errors on multiple paths if there were some results ([42e28c5](https://togithub.com/snyk/snyk/commit/42e28c5cc82684eee5760cfc8945a2a4c5b0363a)) - use correct auth header for api requests ([36211dd](https://togithub.com/snyk/snyk/commit/36211ddfaf80366561dc6c31bb2805e1310ba2fe)) ### [`v1.930.0`](https://togithub.com/snyk/cli/releases/tag/v1.930.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.929.0...v1.930.0) ##### Bug Fixes - gradle projects producing multiple jsondeps ([c449cfc](https://togithub.com/snyk/snyk/commit/c449cfc2c56d08f6331b58f61a5623664cc4323a)) ### [`v1.929.0`](https://togithub.com/snyk/cli/releases/tag/v1.929.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.928.0...v1.929.0) ##### Features Changes to Gradle plugin: - upgrade default Node version 8 to 16 and include tests for Node, JDK and Gradle versions - lint README and config file - update PR review template ### [`v1.928.0`](https://togithub.com/snyk/snyk/compare/v1.927.0...v1.928.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.927.0...v1.928.0) ### [`v1.927.0`](https://togithub.com/snyk/cli/releases/tag/v1.927.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.926.0...v1.927.0) ##### Features - Add progress indicator ([764e0ce](https://togithub.com/snyk/snyk/commit/764e0ce9aec54784aeee202298d6602d8b366da2)) - Rename Invalid Files section for IaC ([1d21526](https://togithub.com/snyk/snyk/commit/1d215263a32ced87ec5d3f87a349da19c46acdcc)) ### [`v1.926.0`](https://togithub.com/snyk/snyk/compare/v1.925.0...v1.926.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.925.0...v1.926.0) ### [`v1.925.0`](https://togithub.com/snyk/cli/releases/tag/v1.925.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.924.0...v1.925.0) ##### Bug Fixes - git targets for variadic paths ([f210f1a](https://togithub.com/snyk/snyk/commit/f210f1a55eb7fad023fa2c4431d856e3202a76a4)) - Include check for quiet option when logging ([afea1b4](https://togithub.com/snyk/snyk/commit/afea1b41eb69e20074b57fdadddbf20d346e6156)) ##### Features - upgrade code client to 4.12.2 ([aac7016](https://togithub.com/snyk/snyk/commit/aac701641d089019f88e33d6f3e7566dc15d7a3c)) ### [`v1.924.0`](https://togithub.com/snyk/cli/releases/tag/v1.924.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.923.0...v1.924.0) ##### Features - update code client ([6022633](https://togithub.com/snyk/snyk/commit/60226339d79e447de94cb9b6331f54b18b75bca7)) ### [`v1.923.0`](https://togithub.com/snyk/cli/releases/tag/v1.923.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.922.0...v1.923.0) ##### Features - support base64 encoding ([b945b0c](https://togithub.com/snyk/snyk/commit/b945b0cf8ecfbf523fd55ce85ab85201eda7dd78)) ### [`v1.922.0`](https://togithub.com/snyk/cli/releases/tag/v1.922.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.921.0...v1.922.0) ##### Bug Fixes - Don't create duplicated IaC projects when sharing results ([041ed24](https://togithub.com/snyk/snyk/commit/041ed24131dd98baaf73a2dc8907dc431c9249fe)) - Ensure that IaC shared results paths use forward slashes ([6f548ef](https://togithub.com/snyk/snyk/commit/6f548ef786b9965573a792ed46912e2d4bf7465d)) - SARIF output IaC ([d07b434](https://togithub.com/snyk/snyk/commit/d07b434ee83e033e9524bda76e818a8679b3635e)) ### [`v1.921.0`](https://togithub.com/snyk/cli/releases/tag/v1.921.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.920.0...v1.921.0) ##### Bug Fixes - link to correct `snyk fix` docs ([5b96c29](https://togithub.com/snyk/snyk/commit/5b96c2934543a87e026d724e3ee33b161b60e48a)) ### [`v1.920.0`](https://togithub.com/snyk/cli/releases/tag/v1.920.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.919.0...v1.920.0) ##### Features - bump snyk-mvn-plugin version ([8e45fc6](https://togithub.com/snyk/snyk/commit/8e45fc67e286c33e61e641106ba0a0dfedec0a23)) ### [`v1.919.0`](https://togithub.com/snyk/cli/releases/tag/v1.919.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.918.0...v1.919.0) ##### Bug Fixes - add tracking of contributors in unmanaged monitoring ([0a2f8ce](https://togithub.com/snyk/snyk/commit/0a2f8ce3f28e77ea78965500cf5870df6391e2e3)) ### [`v1.918.0`](https://togithub.com/snyk/cli/releases/tag/v1.918.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.917.0...v1.918.0) ##### Bug Fixes - iac describe: enable `--deep` when using `--all` ([7651dc2](https://togithub.com/snyk/snyk/commit/7651dc20ddb7be6d80ce8016d3a1492dfbabb8fc)) ##### Features - Implemented new issue description ([c339455](https://togithub.com/snyk/snyk/commit/c33945543da56e65921b2fa1d10526e0250d2aa3)) ### [`v1.917.0`](https://togithub.com/snyk/cli/releases/tag/v1.917.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.916.0...v1.917.0) ##### Bug Fixes - add diagnostics to .Net manifest parser ([8c2f174](https://togithub.com/snyk/snyk/commit/8c2f174e29ca49c55dd29bcb9c44ef76302b2096)) ##### Features - deprecation notice when user run `snyk iac report` ([c249296](https://togithub.com/snyk/snyk/commit/c249296a8ed7b8ddf7eb4b5404b3c1e41509646c)) ### [`v1.916.0`](https://togithub.com/snyk/snyk/compare/v1.915.0...v1.916.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.915.0...v1.916.0) ### [`v1.915.0`](https://togithub.com/snyk/cli/releases/tag/v1.915.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.914.0...v1.915.0) ##### Features - remove-deeproxy-url-configuration ([9202cd2](https://togithub.com/snyk/snyk/commit/9202cd2a601ba4bee8860ccb9f635fbb12ea1910)) ### [`v1.914.0`](https://togithub.com/snyk/cli/releases/tag/v1.914.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.913.0...v1.914.0) ##### Bug Fixes - add debug logs to snyk-mvn-plugin ([df31b57](https://togithub.com/snyk/snyk/commit/df31b578801c0b2b86cfef9525f7ed520a5231df)) ### [`v1.913.0`](https://togithub.com/snyk/cli/releases/tag/v1.913.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.912.0...v1.913.0) ##### Bug Fixes - bump maven plugin version ([ce01fbe](https://togithub.com/snyk/snyk/commit/ce01fbeca5b0e2c25ea281dd823ea07c59b9f7a2)) - set rule index result by security rules mapping ([37d4704](https://togithub.com/snyk/snyk/commit/37d47046d46e030b2c058814a1b1d2cbe68571b4)) ### [`v1.912.0`](https://togithub.com/snyk/cli/releases/tag/v1.912.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.911.0...v1.912.0) CLI Help updates ### [`v1.911.0`](https://togithub.com/snyk/snyk/compare/v1.910.0...v1.911.0) [Compare Source](https://togithub.com/snyk/snyk/compare/v1.910.0...v1.911.0) ### [`v1.910.0`](https://togithub.com/snyk/cli/releases/tag/v1.910.0) [Compare Source](https://togithu

Configuration

📅 Schedule: Branch creation - "" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.



This PR has been generated by Mend Renovate. View repository job log here.

codecov[bot] commented 1 year ago

Codecov Report

All modified and coverable lines are covered by tests :white_check_mark:

Comparison is base (c0b4799) 47.71% compared to head (3dce7be) 47.71%.

Additional details and impacted files ```diff @@ Coverage Diff @@ ## master #3405 +/- ## ======================================= Coverage 47.71% 47.71% ======================================= Files 17 17 Lines 153 153 ======================================= Hits 73 73 Misses 80 80 ```

:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.