Commit Graph

  • 06526e2931
    chore(deps): update stereoscope to 50ce3be7aa1fb8829234ae648215e7907196bfa5 (#3075) anchore-actions-token-generator[bot] 2024-07-29 10:04:46 -04:00
  • a2042e629c
    chore(deps): update CPE dictionary index (#3079) anchore-actions-token-generator[bot] 2024-07-29 10:03:59 -04:00
  • a35e410c75
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.5 to 0.5.6 (#3082) dependabot[bot] 2024-07-29 10:03:44 -04:00
  • 8dd7c9c0b9
    chore(deps): bump github/codeql-action from 3.25.14 to 3.25.15 (#3083) dependabot[bot] 2024-07-29 10:03:35 -04:00
  • 490e05adb2
    fix: traefik classifier (#3077) witchcraze 2024-07-29 22:46:51 +09:00
  • 1cd75b7d68
    python-cataloger: fix normalization test (#3073) mikcl 2024-07-25 20:45:14 +01:00
  • 4882d2e8ce
    Only match ldflag version if it matches the main module or targets main.version (#3062) Laurent Goderre 2024-07-25 13:56:55 -04:00
  • b3848f780f
    python cataloger: allow dots in python package names (#3070) mikcl 2024-07-25 18:56:10 +01:00
  • 36f95d6828
    python-cataloger: normalize package names (#3069) mikcl 2024-07-25 18:54:13 +01:00
  • 68b96ae444
    chore(deps): bump github.com/docker/docker (#3066) dependabot[bot] 2024-07-25 13:50:33 -04:00
  • 3917989f86
    chore(deps): bump github/codeql-action from 3.25.13 to 3.25.14 (#3072) dependabot[bot] 2024-07-25 13:50:06 -04:00
  • 741c8fb9bd
    fix: SPDX output performance with many relationships (#3053) Keith Zantow 2024-07-24 10:14:20 -04:00
  • 9573f557d1
    better go mod detection from partial package builds (#3060) Alex Goodman 2024-07-24 09:34:40 -04:00
  • ca945d16e0
    chore(deps): update tools to latest versions (#3061) anchore-actions-token-generator[bot] 2024-07-23 10:16:25 -04:00
  • fe7c5a7174
    chore(deps): bump github.com/charmbracelet/lipgloss from 0.11.1 to 0.12.1 (#3040) dependabot[bot] 2024-07-22 10:43:17 -07:00
  • 125c787e40
    chore: add debug logging for errors reading RPM files (#3051) Keith Zantow 2024-07-22 13:05:04 -04:00
  • bfe6f5204a
    chore(deps): update CPE dictionary index (#3035) anchore-actions-token-generator[bot] 2024-07-22 08:56:58 -07:00
  • aead40e1de
    chore(deps): bump github.com/docker/docker (#3055) dependabot[bot] 2024-07-22 08:56:01 -07:00
  • 536611fa25
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.4 to 0.5.5 (#3056) dependabot[bot] 2024-07-22 08:45:25 -07:00
  • d0a7d4c43e
    chore(deps): bump modernc.org/sqlite from 1.30.2 to 1.31.1 (#3057) dependabot[bot] 2024-07-22 08:45:01 -07:00
  • 0c53a087f0
    chore(deps): bump docker/login-action from 3.2.0 to 3.3.0 (#3058) dependabot[bot] 2024-07-22 08:44:06 -07:00
  • b263b1ec1f
    chore(deps): bump github/codeql-action from 3.25.12 to 3.25.13 (#3059) dependabot[bot] 2024-07-22 10:55:55 -04:00
  • 034a98f029
    chore(deps): update stereoscope to 487b11e5ba2622d976acda10c605da63b4fbbb0a (#3032) anchore-actions-token-generator[bot] 2024-07-18 09:26:01 -07:00
  • 69031b0646
    chore(deps): update tools to latest versions (#3050) anchore-actions-token-generator[bot] 2024-07-18 08:21:31 -07:00
  • 761a161e7f
    docs: CODE_OF_CONDUCT.md (#3046) Alan Pope 2024-07-17 22:33:17 +01:00
  • ba31c2f1ae
    fix: include CPEs with Maven groupId as vendor (#3045) Keith Zantow 2024-07-17 14:23:58 -04:00
  • 5d729a5e9e
    chore(deps): bump github.com/google/go-containerregistry (#3047) dependabot[bot] 2024-07-17 11:21:23 -07:00
  • 276df95768
    chore(deps): bump github.com/moby/sys/mountinfo from 0.7.1 to 0.7.2 (#3048) dependabot[bot] 2024-07-17 11:21:14 -07:00
  • cca9a06a64
    chore(deps): bump modernc.org/sqlite from 1.30.1 to 1.30.2 (#3039) dependabot[bot] 2024-07-17 09:10:34 -04:00
  • 4d23990dd4
    docs: link to contrib/dev docs in readme (#3029) Bradley Jones 2024-07-16 14:59:31 +01:00
  • d4fa61e0a2
    chore: Fix apache shield in readme (#3021) Adam McClenaghan 2024-07-16 14:59:14 +01:00
  • d4d4e003e9
    chore(deps): update tools to latest versions (#3031) anchore-actions-token-generator[bot] 2024-07-16 06:58:33 -07:00
  • 6bf91a410d
    chore(deps): bump github/codeql-action from 3.25.11 to 3.25.12 (#3034) dependabot[bot] 2024-07-16 06:58:18 -07:00
  • 77c300d617
    chore(deps): bump anchore/sbom-action from 0.16.1 to 0.17.0 (#3044) dependabot[bot] 2024-07-16 06:58:07 -07:00
  • 75902b0540
    fix: stop panicking on "devel" version go stdlib (#3043) William Murphy 2024-07-16 09:51:14 -04:00
  • 278b72d39b
    chore: pin fedora image for elf binary test (#3041) Keith Zantow 2024-07-15 12:37:09 -04:00
  • 37245a21cc
    chore(deps): bump anchore/sbom-action from 0.16.0 to 0.16.1 (#3023) dependabot[bot] 2024-07-11 14:50:48 -04:00
  • e2fe955262
    chore(deps): update stereoscope to 27b66b76fc6686fcf6bde656aa09e1f0e047fec1 (#3026) anchore-actions-token-generator[bot] 2024-07-11 10:38:10 -07:00
  • 4e09908ba1
    chore(deps): bump actions/setup-go from 5.0.1 to 5.0.2 (#3027) v1.9.0 dependabot[bot] 2024-07-11 10:19:48 -07:00
  • 863793a3cc
    chore(deps): bump github.com/charmbracelet/lipgloss (#3028) dependabot[bot] 2024-07-11 10:19:14 -07:00
  • f7ffcc534f
    fix: stabilize cpe sorting during collection sort (#3009) Christopher Angelo Phillips 2024-07-09 14:24:21 -04:00
  • b101f44aba
    Map the downloadLocation field for PHP Composer packages (#3011) Laurent Goderre 2024-07-09 12:01:58 -04:00
  • de3313cfb6
    chore(deps): update stereoscope to e46739e217969fa67cbe8834b64bb165a10a1548 (#3013) anchore-actions-token-generator[bot] 2024-07-09 07:53:04 -07:00
  • b2f9904d74
    chore(deps): bump golang.org/x/net from 0.26.0 to 0.27.0 (#3015) dependabot[bot] 2024-07-09 07:52:32 -07:00
  • 13d01ecaff
    chore(deps): bump golang.org/x/mod from 0.18.0 to 0.19.0 (#3014) dependabot[bot] 2024-07-09 07:08:25 -07:00
  • 7dc1b1ce27
    chore(deps): bump actions/upload-artifact from 4.3.3 to 4.3.4 (#3017) dependabot[bot] 2024-07-09 07:08:12 -07:00
  • b8dce675fe
    chore(deps): bump github.com/google/go-containerregistry (#3019) dependabot[bot] 2024-07-09 07:08:02 -07:00
  • 6dda9edd7c
    chore(deps): bump github.com/adrg/xdg from 0.4.0 to 0.5.0 (#3020) dependabot[bot] 2024-07-09 07:07:53 -07:00
  • 04c861bf77
    chore(deps): update CPE dictionary index (#3016) anchore-actions-token-generator[bot] 2024-07-08 08:13:17 -04:00
  • 573440b7cf
    Infer the package type from ELF package notes (#3008) Alex Goodman 2024-07-02 16:07:08 -04:00
  • c816039e91
    chore(deps): update tools to latest versions (#3003) anchore-actions-token-generator[bot] 2024-07-01 20:04:45 -04:00
  • 7f3ca65cf6
    chore(deps): update CPE dictionary index (#3002) anchore-actions-token-generator[bot] 2024-07-01 15:02:15 -04:00
  • 43e5b1b45f
    chore(deps): bump github.com/docker/docker (#3006) dependabot[bot] 2024-07-01 19:01:01 +00:00
  • a876aaccb2
    chore(deps): bump github/codeql-action from 3.25.10 to 3.25.11 (#3004) dependabot[bot] 2024-07-01 19:00:35 +00:00
  • 875669bfd1
    chore(deps): bump github.com/saferwall/pe from 1.5.3 to 1.5.4 (#3005) dependabot[bot] 2024-07-01 19:00:07 +00:00
  • 5283c4687a
    feat: version 3 support for swift package manager of the resolved files (#3001) Danielle Featherstone 2024-07-01 14:27:37 -04:00
  • 4d48adfa3f
    chore(deps): bump github.com/spdx/tools-golang from 0.5.4 to 0.5.5 (#2999) dependabot[bot] 2024-06-26 13:44:52 +00:00
  • c8b449c92b
    chore(deps): bump github.com/docker/docker (#2994) dependabot[bot] 2024-06-25 14:40:51 -07:00
  • ceced5eb27
    Add detection of Erlang in Alpine linux (#2996) Laurent Goderre 2024-06-25 17:40:40 -04:00
  • 7da15890eb
    chore(deps): update tools to latest versions (#2991) anchore-actions-token-generator[bot] 2024-06-25 13:41:26 -07:00
  • 580c09b01c
    chore(deps): update stereoscope to 753b5576fe42bc007b22108ad7911d1729957a46 (#2992) anchore-actions-token-generator[bot] 2024-06-25 13:41:08 -07:00
  • 0dce67872e
    chore(deps): bump github.com/charmbracelet/bubbletea (#2995) dependabot[bot] 2024-06-25 10:10:26 -07:00
  • 1eae9333a9
    chore(deps): update CPE dictionary index (#2986) v1.8.0 anchore-actions-token-generator[bot] 2024-06-24 08:27:29 -07:00
  • 863891f325
    chore(deps): bump github.com/go-test/deep from 1.1.0 to 1.1.1 (#2988) dependabot[bot] 2024-06-24 08:27:13 -07:00
  • bd1c1d260c
    fix: handle errors reading go licenses (#2985) Keith Zantow 2024-06-24 10:27:03 -04:00
  • f5a917a5a2
    docs: update cyclone-dx documentation (#2983) Christopher Angelo Phillips 2024-06-21 12:32:59 -04:00
  • ae0683074e
    feat: update syft to generate cyclone-dx 1.6 by default (#2978) Rajan Agaskar 2024-06-21 08:51:27 -07:00
  • 9b178174a7
    chore(deps): bump github.com/charmbracelet/bubbletea (#2982) dependabot[bot] 2024-06-21 08:46:35 -07:00
  • e947779886
    chore(deps): bump peter-evans/create-pull-request from 6.0.5 to 6.1.0 (#2975) dependabot[bot] 2024-06-20 15:12:12 +00:00
  • 7a35de04ee
    fix: detection of arangodb 3.12 (#2979) Laurent Goderre 2024-06-20 11:11:03 -04:00
  • 246df97ae7
    chore: enable dependabot to keep boostrap action updated (#2976) Weston Steimel 2024-06-19 20:17:11 +01:00
  • 750d37f075
    chore(deps): bump github.com/github/go-spdx/v2 from 2.2.0 to 2.3.1 (#2973) dependabot[bot] 2024-06-18 09:46:11 -07:00
  • 5061b905dc
    chore(deps): bump github.com/google/go-containerregistry (#2971) dependabot[bot] 2024-06-17 08:44:19 -07:00
  • ed3774afa7
    chore(deps): bump github.com/spf13/cobra from 1.8.0 to 1.8.1 (#2972) dependabot[bot] 2024-06-17 08:44:10 -07:00
  • 22d5731482
    fix: fix parsing for complex toml types (#2965) v1.7.0 Christopher Angelo Phillips 2024-06-14 12:32:17 -07:00
  • af3aaa0397
    fix: make caching options more explicit (#2966) Keith Zantow 2024-06-14 14:45:48 -04:00
  • 70098e20bb
    chore(deps): update tools to latest versions (#2961) anchore-actions-token-generator[bot] 2024-06-14 08:18:41 -07:00
  • 784b17f66c
    chore(deps): bump github/codeql-action from 3.25.9 to 3.25.10 (#2964) dependabot[bot] 2024-06-14 08:18:25 -07:00
  • d5cd5f6091
    feat: index known CPEs for wordpress plugins and themes (#2963) Weston Steimel 2024-06-14 14:39:43 +01:00
  • 749ccc59c1
    fix(golang): improve version extraction from ldflags for pingcap TiDB (#2962) Weston Steimel 2024-06-14 14:35:14 +01:00
  • 273e31e806
    chore(deps): bump actions/checkout from 4.1.6 to 4.1.7 (#2955) dependabot[bot] 2024-06-13 12:28:04 -04:00
  • 9beaec2e97
    chore(deps): bump github/codeql-action from 3.25.8 to 3.25.9 (#2956) dependabot[bot] 2024-06-13 12:27:53 -04:00
  • 60bfda45cd
    chore: re-generate cpe-index cpe-index-experiment-thing Weston Steimel 2024-06-13 09:09:40 +01:00
  • 78167f1492
    index cpes for github repos Weston Steimel 2024-05-28 17:45:42 +01:00
  • 4267bea068
    feat: index known CPEs for wordpress plugins and themes Weston Steimel 2024-05-01 12:36:01 +01:00
  • ca0cc52d47
    fix: separate golang license caches from mod dir (#2852) Keith Zantow 2024-06-12 19:12:35 -04:00
  • dd723bb3c5
    chore(deps): bump github.com/vbatts/go-mtree from 0.5.3 to 0.5.4 (#2952) dependabot[bot] 2024-06-12 13:17:06 -04:00
  • fb68489590
    chore(deps): update tools to latest versions (#2949) anchore-actions-token-generator[bot] 2024-06-11 08:09:07 -07:00
  • 5590d5c1ce
    chore(deps): bump modernc.org/sqlite from 1.30.0 to 1.30.1 (#2950) dependabot[bot] 2024-06-11 08:08:45 -07:00
  • 0956753409
    Consider Author field for wordpress plugins when generating CPEs (#2946) Alex Goodman 2024-06-10 14:12:20 -04:00
  • f966bcfd03
    trim whitespace from wordpress values (#2945) Alex Goodman 2024-06-10 13:35:01 -04:00
  • c43f4fb416
    add signature verification to install.sh (#2941) v1.6.0 Alex Goodman 2024-06-10 11:29:53 -04:00
  • db0c33481e
    pin golang image (#2944) Alex Goodman 2024-06-10 09:59:33 -04:00
  • a658cc7402
    chore(deps): update tools to latest versions (#2943) anchore-actions-token-generator[bot] 2024-06-10 09:20:22 -04:00
  • 254a562b4e
    Add support for reading ELF package notes with section header (#2939) Alex Goodman 2024-06-07 14:38:54 -04:00
  • bc20e66d08
    chore(deps): update tools to latest versions (#2940) anchore-actions-token-generator[bot] 2024-06-07 16:55:32 +00:00
  • 6e16396d18
    remove dco workflow (#2936) Alex Goodman 2024-06-06 10:29:55 -04:00
  • 5cdc0845fb
    feat: add license field to ELF binary package metadata (#2890) Brian Ebarb 2024-06-06 09:10:53 -05:00
  • baca15f186
    chore(deps): bump github.com/docker/docker (#2935) dependabot[bot] 2024-06-06 09:56:47 -04:00
  • b608ab77e1
    feat: classifier for util-linux (#2933) Laurent Goderre 2024-06-05 17:32:52 -04:00