Commit Graph

  • 25c2e60358
    chore(deps): update CPE dictionary index (#2780) anchore-actions-token-generator[bot] 2024-04-15 11:15:38 -04:00
  • dc7fa21980
    chore(deps): bump github/codeql-action from 3.24.10 to 3.25.0 (#2779) dependabot[bot] 2024-04-15 10:00:54 -04:00
  • f28023aedb
    feat: index known cpes for PHP extensions Weston Steimel 2024-04-15 10:11:43 +01:00
  • 587690b875
    chore: fix broken cpe index generation task (#2778) Weston Steimel 2024-04-15 14:39:57 +01:00
  • 21eaa5c82b
    chore(deps): bump github.com/docker/docker (#2773) dependabot[bot] 2024-04-12 15:33:27 -04:00
  • 081ec04b3f
    chore(deps): bump peter-evans/create-pull-request from 6.0.2 to 6.0.3 (#2774) dependabot[bot] 2024-04-12 15:31:36 -04:00
  • dde5d349b1
    fix: more robust go main version extraction (#2767) v1.2.0 Keith Zantow 2024-04-11 11:58:51 -04:00
  • a5d77b9263
    chore(deps): update tools to latest versions (#2768) anchore-actions-token-generator[bot] 2024-04-11 11:53:55 -04:00
  • c9aab4863b
    fix: binary character in java version (#2766) Laurent Goderre 2024-04-11 10:32:24 -04:00
  • af1a065d2a
    chore(deps): update tools to latest versions (#2760) anchore-actions-token-generator[bot] 2024-04-09 12:03:12 -04:00
  • 88cef1e05c
    chore(deps): bump modernc.org/sqlite from 1.29.5 to 1.29.6 (#2761) dependabot[bot] 2024-04-09 12:02:56 -04:00
  • 870d97ca5a
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.5.6 to 6.5.8 (#2754) dependabot[bot] 2024-04-08 12:19:45 -04:00
  • e681bc4780
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.2 to 0.5.3 (#2755) dependabot[bot] 2024-04-08 12:19:32 -04:00
  • c31696f131
    chore(deps): bump github/codeql-action from 3.24.9 to 3.24.10 (#2756) dependabot[bot] 2024-04-08 12:19:20 -04:00
  • 67781e98a2
    chore(deps): bump golang.org/x/mod from 0.16.0 to 0.17.0 (#2751) dependabot[bot] 2024-04-05 19:22:00 +00:00
  • 619ace65c3
    Differentiate between JRE and JDK (#2748) Laurent Goderre 2024-04-05 15:10:58 -04:00
  • 3e4e3bb1d4
    chore(deps): bump golang.org/x/net from 0.23.0 to 0.24.0 (#2752) dependabot[bot] 2024-04-05 15:10:15 -04:00
  • 1e31356c49
    chore(deps): update tools to latest versions (#2744) v1.1.1 anchore-actions-token-generator[bot] 2024-04-04 10:34:19 -04:00
  • 0fa925e5af
    chore(deps): bump golang.org/x/net from 0.22.0 to 0.23.0 (#2747) dependabot[bot] 2024-04-04 10:34:03 -04:00
  • e100776f22
    chore: update anchore/packageurl-go to use latest commits (#2746) Christopher Angelo Phillips 2024-04-04 10:33:51 -04:00
  • e0233625cb
    feat: cataloger for PHP Pecl and PEAR packages (#2604) Laurent Goderre 2024-04-02 11:55:56 -04:00
  • e0f5b5a787
    chore(deps): bump github.com/go-git/go-git/v5 from 5.11.0 to 5.12.0 (#2743) dependabot[bot] 2024-04-01 14:14:07 -04:00
  • 9c42c83229
    chore(deps): update tools to latest versions (#2741) anchore-actions-token-generator[bot] 2024-03-30 17:51:21 -04:00
  • 01340b2a5c
    fix: conan poco project cpe (#2740) Keith Zantow 2024-03-28 16:56:24 -04:00
  • 16edb40c72
    chore(deps): bump github.com/distribution/reference from 0.5.0 to 0.6.0 (#2738) dependabot[bot] 2024-03-28 12:22:00 -04:00
  • 5a865d0d90
    chore(deps): bump anchore/sbom-action from 0.15.9 to 0.15.10 (#2737) dependabot[bot] 2024-03-27 17:52:22 +00:00
  • 410867ca0c
    fix: panic scanning binaries without symtab (#2739) Keith Zantow 2024-03-27 13:51:45 -04:00
  • 469b4c13bb
    chore: remove useless code (#2716) guangwu 2024-03-27 00:21:03 +08:00
  • 57e9cc52a4
    chore(deps): bump google.golang.org/protobuf from 1.31.0 to 1.33.0 (#2731) dependabot[bot] 2024-03-26 11:52:50 -04:00
  • 55fff0f4a1
    chore(deps): bump github/codeql-action from 3.24.8 to 3.24.9 (#2732) dependabot[bot] 2024-03-26 11:50:31 -04:00
  • 2a7b4f3761
    chore(deps): update tools to latest versions (#2733) anchore-actions-token-generator[bot] 2024-03-26 11:50:21 -04:00
  • fe3704d4a9
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.5.5 to 6.5.6 (#2734) dependabot[bot] 2024-03-26 11:50:07 -04:00
  • 059cfd6730
    update release token from readonly to write token (#2735) Hung Nguyen 2024-03-26 09:06:55 -04:00
  • f4e18961b9
    Adding the ability to retrieve remote licenses from package.lock (#2708) v1.1.0 Colm O hEigeartaigh 2024-03-21 17:20:04 +00:00
  • 0d5ebed74a
    dont include labels for dependabot ecosystems (#2720) Alex Goodman 2024-03-21 12:16:01 -04:00
  • 8f7305ef78
    chore(deps): bump fountainhead/action-wait-for-check from 1.1.0 to 1.2.0 (#2717) dependabot[bot] 2024-03-21 12:15:30 -04:00
  • c199b80b88
    chore(deps): update tools to latest versions (#2726) anchore-actions-token-generator[bot] 2024-03-21 12:15:06 -04:00
  • df547020ef
    chore(deps): bump github/codeql-action from 3.24.7 to 3.24.8 (#2725) dependabot[bot] 2024-03-21 12:14:51 -04:00
  • 37094c9751
    chore(deps): bump actions/cache from 4.0.1 to 4.0.2 (#2728) dependabot[bot] 2024-03-21 12:14:43 -04:00
  • c83556e7b6
    chore(deps): bump github.com/docker/docker (#2730) dependabot[bot] 2024-03-21 12:14:32 -04:00
  • 3ac1cd7a9f
    updating credentials to scoped permissions (#2722) Hung Nguyen 2024-03-20 17:35:07 -04:00
  • 96d2b4a368
    chore(deps): bump github.com/jedib0t/go-pretty/v6 from 6.5.4 to 6.5.5 (#2718) dependabot[bot] 2024-03-15 10:33:11 -04:00
  • 807de976c4
    chore(deps): bump github.com/google/go-containerregistry (#2719) dependabot[bot] 2024-03-15 10:32:51 -04:00
  • cf17bd69b2
    Add detection for Oracle GraalVM (#2705) Laurent Goderre 2024-03-14 11:40:07 -04:00
  • 1c8d29d577
    chore(deps): bump docker/login-action from 3.0.0 to 3.1.0 (#2714) dependabot[bot] 2024-03-14 11:16:16 -04:00
  • 6a2517b5d2
    Add ELF binary package cataloger (#2396) brian-ebarb 2024-03-14 10:16:03 -05:00
  • 7ab6fc3fe4
    chore(deps): bump modernc.org/sqlite from 1.29.3 to 1.29.5 (#2710) dependabot[bot] 2024-03-14 09:58:56 -04:00
  • 2051a62ded
    chore(deps): bump github/codeql-action from 3.24.6 to 3.24.7 (#2711) dependabot[bot] 2024-03-14 09:58:42 -04:00
  • 78ad3d648f [wip] prototype binary relationships add-elf-binary-relationships Alex Goodman 2024-03-13 18:09:19 -04:00
  • 1b3e57c264 remove unreleated swift change Alex Goodman 2024-03-13 17:09:08 -04:00
  • ad7edba2a5 remove dead test code Alex Goodman 2024-03-13 17:07:52 -04:00
  • e51d4bcda1 less verbose logging Alex Goodman 2024-03-13 17:05:56 -04:00
  • d8113b5f07 bump JSON schema to v16.0.6 + expand test fixtures Alex Goodman 2024-03-13 15:51:03 -04:00
  • a35f64c971 feat: elf_binary_package_cataloger Brian Ebarb 2024-03-13 14:34:06 -05:00
  • 5534c38d0f
    chore(deps): bump peter-evans/create-pull-request from 6.0.1 to 6.0.2 (#2712) dependabot[bot] 2024-03-13 13:47:47 -04:00
  • 47fc909700
    Show binary exports, entrypoint, and imports (#2626) Alex Goodman 2024-03-12 18:04:02 -04:00
  • 2e2a9377ea
    chore(deps): bump actions/checkout from 4.1.1 to 4.1.2 (#2703) dependabot[bot] 2024-03-12 13:18:44 -04:00
  • 4ca79c7626
    chore(deps): bump github.com/knqyf263/go-rpmdb (#2701) dependabot[bot] 2024-03-11 11:48:05 -04:00
  • 3743f5ae53
    chore: reduce duplicate case SwiftPkg (#2696) guangwu 2024-03-08 02:15:31 +08:00
  • ebb9d4edb6
    chore: remove deprecated os.SEEK_SET os.SEEK_CUR (#2693) guangwu 2024-03-08 02:10:48 +08:00
  • e2a9d891b2
    chore(deps): bump github.com/docker/docker (#2698) dependabot[bot] 2024-03-07 13:00:14 -05:00
  • 5b09c154bb
    chore(deps): bump modernc.org/sqlite from 1.29.2 to 1.29.3 (#2699) dependabot[bot] 2024-03-07 13:00:02 -05:00
  • 1b121ac3f4
    chore(deps): bump golang.org/x/net from 0.21.0 to 0.22.0 (#2689) v1.0.1 dependabot[bot] 2024-03-06 14:25:56 -05:00
  • f9e09aef19
    docs: add simplest example from regsitry (#2691) Keith Zantow 2024-03-06 14:25:37 -05:00
  • d2ac672f8f
    chore(deps): update tools to latest versions (#2688) anchore-actions-token-generator[bot] 2024-03-06 14:25:13 -05:00
  • 5e3fde04a5
    chore(deps): bump anchore/sbom-action from 0.15.8 to 0.15.9 (#2694) dependabot[bot] 2024-03-06 14:24:56 -05:00
  • e214645394
    chore(deps): bump github.com/charmbracelet/lipgloss from 0.9.1 to 0.10.0 (#2695) dependabot[bot] 2024-03-06 14:24:46 -05:00
  • 5bd1cd5c13
    chore(deps): bump golang.org/x/mod from 0.15.0 to 0.16.0 (#2690) dependabot[bot] 2024-03-05 10:15:18 -05:00
  • fe4f17286f
    chore(deps): bump github.com/stretchr/testify from 1.8.4 to 1.9.0 (#2684) dependabot[bot] 2024-03-01 13:51:18 -05:00
  • d7e58964ef
    chore(deps): bump actions/cache from 4.0.0 to 4.0.1 (#2685) dependabot[bot] 2024-03-01 13:50:49 -05:00
  • 59d54d6154
    chore(deps): bump github/codeql-action from 3.24.5 to 3.24.6 (#2686) dependabot[bot] 2024-03-01 13:50:34 -05:00
  • 4d0dd02d5a
    chore: update stereoscope (#2683) Christopher Angelo Phillips 2024-02-29 13:32:18 -05:00
  • 356f7c92b4
    fix: match OpenSSL letter releases (#2682) v1.0.0 Harm Weites 2024-02-29 15:39:23 +01:00
  • 6377465440
    Mark duplicated rows in table output (#2679) Alex Goodman 2024-02-29 09:33:00 -05:00
  • 3ad91f2678
    fix: trim path from deps.json in portable way (#2674) William Murphy 2024-02-29 09:31:55 -05:00
  • 5ef83fdc79
    chore(deps): update tools to latest versions (#2680) anchore-actions-token-generator[bot] 2024-02-29 09:27:37 -05:00
  • 06ff1a353a
    enforce breaking change bump major version (#2635) Alex Goodman 2024-02-28 15:48:20 -05:00
  • 326ec57d4a
    docs: fix incorrect flag name in readme (#2677) Keith Zantow 2024-02-28 15:39:43 -05:00
  • 48e5672a87
    Consider filesystem types for mount points when ignoring system paths (#2675) Alex Goodman 2024-02-28 15:37:17 -05:00
  • 63171b55dd
    fix: stop emitting bus events on go mod events (#2673) William Murphy 2024-02-28 14:14:46 -05:00
  • acc473fc30
    chore(deps): bump peter-evans/create-pull-request from 6.0.0 to 6.0.1 (#2676) dependabot[bot] 2024-02-28 09:31:29 -05:00
  • a978966cad
    feat: add --from flag, refactor source providers (#2610) Keith Zantow 2024-02-27 16:44:37 -05:00
  • 928511ea0f
    chore(deps): bump modernc.org/sqlite from 1.29.1 to 1.29.2 (#2671) v0.105.1 dependabot[bot] 2024-02-26 10:57:06 -05:00
  • 33b72ccbf8
    chore(deps): bump github/codeql-action from 3.24.4 to 3.24.5 (#2666) dependabot[bot] 2024-02-23 14:10:26 +00:00
  • 2995c3c4fd
    fix: SPDX tag value version selector (#2665) Keith Zantow 2024-02-23 08:22:10 -05:00
  • 170ac079d4
    fix(install): return appropriate error codes (#2664) Stefan Hacker 2024-02-23 01:34:51 +01:00
  • 108a5dae9b
    chore: update busybox image for acceptance tests (#2663) Keith Zantow 2024-02-22 15:32:17 -05:00
  • cdf1e0bacb
    chore(deps): bump github/codeql-action from 3.24.3 to 3.24.4 (#2662) dependabot[bot] 2024-02-22 16:50:53 +00:00
  • 0c3b8ca4ed
    rename binary classifier cataloger name (#2643) Alex Goodman 2024-02-20 13:52:11 -05:00
  • 434b6ad506
    add cataloger selection example (#2646) Alex Goodman 2024-02-20 11:44:42 -05:00
  • 3598cb4f8f
    chore(deps): update tools to latest versions (#2651) anchore-actions-token-generator[bot] 2024-02-20 11:39:54 -05:00
  • 8260bce057
    chore(deps): update stereoscope to 6171ee21e1d584f6bde910f354d126c9cd70deaa (#2655) anchore-actions-token-generator[bot] 2024-02-17 10:22:56 -05:00
  • 578ac9cf2d
    chore(deps): bump github/codeql-action from 3.24.1 to 3.24.3 (#2649) dependabot[bot] 2024-02-15 09:13:29 -05:00
  • a1b23bd57d
    add syft version used to SBOM tool info by default (#2647) Alex Goodman 2024-02-14 16:57:31 -05:00
  • 65cadda486
    Survive indexing dead symlinks (#2645) v0.105.0 Alex Goodman 2024-02-14 16:06:22 -05:00
  • a909e3cec9
    fix considering base path when ignoring known bad unix paths (#2644) Alex Goodman 2024-02-14 15:57:38 -05:00
  • 8e62ff9831
    test for field conventions in json schema (#2642) Alex Goodman 2024-02-14 11:11:53 -05:00
  • 96ee2db875
    feat: Add Wordpress cataloger (#2218) Alexandr Hacicheant 2024-02-14 18:03:25 +02:00
  • 98b700e83c
    rename binary cataloger to be more unique (#2633) Alex Goodman 2024-02-14 11:01:55 -05:00
  • 9803db2949
    fix: update runner size to use larger HD for codeql (#2641) Christopher Angelo Phillips 2024-02-14 10:31:05 -05:00