Commit Graph

  • 9928386d38
    chore(deps): update CPE dictionary index (#4050) anchore-actions-token-generator[bot] 2025-07-08 15:26:50 -04:00
  • 9dd06981b4
    chore(deps): bump github.com/hashicorp/hcl/v2 from 2.23.0 to 2.24.0 (#4051) dependabot[bot] 2025-07-08 15:26:34 -04:00
  • f88be457ef
    chore(deps): bump github.com/charmbracelet/bubbletea from 1.3.5 to 1.3.6 (#4052) dependabot[bot] 2025-07-08 15:26:26 -04:00
  • 02703d5c80
    feat: RHEL EUS detection (#4023) Keith Zantow 2025-07-07 10:11:20 -04:00
  • 9cbd52bdd7
    chore(deps): bump anchore/sbom-action from 0.20.1 to 0.20.2 (#4048) dependabot[bot] 2025-07-03 15:00:51 -04:00
  • e8b62ab9ac
    chore(deps): update anchore dependencies (#4047) v1.28.0 anchore-actions-token-generator[bot] 2025-07-02 16:09:46 +00:00
  • 2af1bca83f
    chore(deps): update anchore dependencies (#4045) anchore-actions-token-generator[bot] 2025-07-02 11:50:29 -04:00
  • 2111d4d0e4
    chore: upgrade tablewriter dependency to use new API (#3990) Carlos Tadeu Panato Junior 2025-07-01 22:16:16 +02:00
  • 179cc70a36
    chore(deps): bump github.com/Masterminds/semver/v3 from 3.3.1 to 3.4.0 (#4040) dependabot[bot] 2025-07-01 19:21:02 +00:00
  • 1e3d2a2927
    chore: update tests to read from latest test-fixture-cache and fix cache publish (#4042) Christopher Angelo Phillips 2025-07-01 10:11:36 -04:00
  • 421afac532
    chore(deps): bump github.com/mholt/archives from 0.1.2 to 0.1.3 (#4032) dependabot[bot] 2025-06-30 17:58:41 -04:00
  • b0b10acb40
    chore(deps): bump marocchino/sticky-pull-request-comment (#4019) dependabot[bot] 2025-06-30 17:58:32 -04:00
  • b90028bd1f
    chore(deps): bump sigstore/cosign-installer from 3.9.0 to 3.9.1 (#4022) dependabot[bot] 2025-06-30 17:58:23 -04:00
  • b5a1b309ca
    chore(deps): update tools to latest versions (#4035) anchore-actions-token-generator[bot] 2025-06-30 17:17:49 -04:00
  • 841f963e70
    chore(deps): update CPE dictionary index (#4037) anchore-actions-token-generator[bot] 2025-06-30 17:17:34 -04:00
  • ba59f57bfe
    chore(deps): bump github/codeql-action from 3.29.0 to 3.29.2 (#4039) dependabot[bot] 2025-06-30 17:17:20 -04:00
  • 69baca8804 fix go mod tidy release problem Kudryavcev Nikolay 2025-06-29 20:52:32 +03:00
  • 1ae11d511b Merge remote-tracking branch 'origin' into upgrade-deprecated-archiver Kudryavcev Nikolay 2025-06-29 20:36:17 +03:00
  • 01e6de0716 fix linting Kudryavcev Nikolay 2025-06-27 13:53:57 +03:00
  • 17a66f0186 upgrade deprecated library for archiving Kudryavcev Nikolay 2025-06-27 00:29:35 +03:00
  • 2bda086423
    Add ability to scan snaps (as a source) (#3929) Alex Goodman 2025-06-25 16:53:35 -04:00
  • 4eb8ba4575
    chore(deps): update CPE dictionary index (#4021) anchore-actions-token-generator[bot] 2025-06-23 11:30:19 -04:00
  • 49115355d4
    chore(deps): update tools to latest versions (#4016) anchore-actions-token-generator[bot] 2025-06-19 14:02:03 -04:00
  • d9eb1d7c1b
    chore(deps): update tools to latest versions (#4012) anchore-actions-token-generator[bot] 2025-06-17 11:35:22 -04:00
  • 32a30f76c6
    chore(deps): bump github.com/go-viper/mapstructure/v2 (#4014) dependabot[bot] 2025-06-17 11:35:09 -04:00
  • b52b13c03c
    chore(deps): bump sigstore/cosign-installer from 3.8.2 to 3.9.0 (#4015) dependabot[bot] 2025-06-17 11:34:58 -04:00
  • 0bfda2c514
    chore(deps): update CPE dictionary index (#4007) anchore-actions-token-generator[bot] 2025-06-16 11:15:50 -04:00
  • 0b57d03958
    chore(deps): bump anchore/sbom-action from 0.20.0 to 0.20.1 (#4008) dependabot[bot] 2025-06-16 11:15:37 -04:00
  • 72f9c42562
    chore(deps): bump github.com/google/go-containerregistry (#4009) dependabot[bot] 2025-06-16 11:15:22 -04:00
  • 181e180284
    chore(deps): update tools to latest versions (#3992) anchore-actions-token-generator[bot] 2025-06-13 10:38:44 -04:00
  • c19558dd73
    chore(deps): bump github/codeql-action from 3.28.19 to 3.29.0 (#4000) dependabot[bot] 2025-06-12 10:37:53 -04:00
  • 10f0631710
    fix: provide separate nonroot image (#3998) v1.27.1 Keith Zantow 2025-06-11 17:00:55 -04:00
  • 96c34ffc43
    account for non-import shapes (#3997) Alex Goodman 2025-06-11 13:11:40 -04:00
  • 79b6d5daa4
    Allow decoding of anchorectl json files (#3973) Alex Goodman 2025-06-10 15:03:50 -04:00
  • cfa7cc5be9
    chore(deps): bump github.com/anchore/stereoscope (#3991) dependabot[bot] 2025-06-10 11:47:40 -04:00
  • 18f9b5ab58
    remove benchmark utils (#3982) v1.27.0 Alex Goodman 2025-06-09 14:24:49 -04:00
  • 9090c69708
    fix: exclude packages with SPDX GENERATED_FROM source package indication (#3981) Keith Zantow 2025-06-09 14:12:23 -04:00
  • 1396a14550
    chore(deps): bump modernc.org/sqlite from 1.37.1 to 1.38.0 (#3979) dependabot[bot] 2025-06-09 10:31:10 -04:00
  • 592bc0af7d
    chore(deps): bump github.com/go-git/go-git/v5 from 5.16.1 to 5.16.2 (#3978) dependabot[bot] 2025-06-09 10:26:47 -04:00
  • b6b8a8f52e
    chore(deps): update tools to latest versions (#3977) anchore-actions-token-generator[bot] 2025-06-09 08:56:36 -04:00
  • a196cc9215
    chore(deps): update CPE dictionary index (#3976) anchore-actions-token-generator[bot] 2025-06-09 08:56:18 -04:00
  • 12c8003317
    chore(deps): bump golang.org/x/net from 0.40.0 to 0.41.0 (#3970) dependabot[bot] 2025-06-06 10:23:02 -04:00
  • 0a25c0ec5c
    chore(deps): bump github.com/sergi/go-diff (#3971) dependabot[bot] 2025-06-06 10:22:54 -04:00
  • 5ae11bd1f7
    Fix Python package dependency detection (#3965) Christoph Blessing 2025-06-06 15:46:16 +02:00
  • bc1cbde4f7
    fix: Remove three Rust crate false positive CPE matches (#3967) John Vandenberg 2025-06-06 16:29:06 +08:00
  • 868a6a7584
    Harden Container Runtime with Non-Root User (#3941) Michael Briley 2025-06-05 10:36:23 -06:00
  • bd894b9c4d
    fix: Remove two Rust crate false positive CPE matches (#3962) John Vandenberg 2025-06-05 22:28:54 +08:00
  • c36c69779a
    chore(deps): bump golang.org/x/mod from 0.24.0 to 0.25.0 (#3963) dependabot[bot] 2025-06-05 13:46:58 +00:00
  • cd23ccc6e6
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.12 to 0.5.13 (#3964) dependabot[bot] 2025-06-05 13:45:40 +00:00
  • 71d84603c1
    fix: bump stereoscope to fix symlink performance issue (#3953) Keith Zantow 2025-06-04 11:50:03 -04:00
  • f2118b568d
    chore(deps): bump github.com/go-git/go-git/v5 from 5.16.0 to 5.16.1 (#3960) dependabot[bot] 2025-06-04 14:02:45 +00:00
  • bb50f1650d
    chore(deps): bump github/codeql-action from 3.28.18 to 3.28.19 (#3952) dependabot[bot] 2025-06-03 10:20:24 -04:00
  • a0be514184
    feat: add syft schema version to version command (#3949) Christopher Angelo Phillips 2025-06-02 11:50:21 -04:00
  • 8cc808f8f6
    chore(deps): bump github.com/gkampitakis/go-snaps from 0.5.11 to 0.5.12 (#3943) dependabot[bot] 2025-06-02 10:46:30 -04:00
  • 967e2f85bf
    chore(deps): update tools to latest versions (#3945) anchore-actions-token-generator[bot] 2025-06-02 10:46:20 -04:00
  • 339fea9851
    chore(deps): update CPE dictionary index (#3947) anchore-actions-token-generator[bot] 2025-06-02 10:43:31 -04:00
  • 576e729c84
    fix: revert incorrect graalvm unknown behavior (#3944) Keith Zantow 2025-05-30 11:36:57 -04:00
  • b3e8926025
    chore(deps): bump github.com/google/go-containerregistry (#3933) dependabot[bot] 2025-05-28 12:45:51 -04:00
  • 002ec4510a
    chore(deps): update CPE dictionary index (#3935) anchore-actions-token-generator[bot] 2025-05-28 12:45:42 -04:00
  • 684e1e963d
    fix(terraform): parse provider lock entries without constraints (#3934) Thomas Gosteli 2025-05-27 20:55:19 +02:00
  • bbf3bb5856
    fix(relationship): favor real paths over symlinks for ownership by file (#3923) Dan Luhring 2025-05-23 14:33:19 -04:00
  • 31c1be6d4d
    chore(deps): bump modernc.org/sqlite from 1.37.0 to 1.37.1 (#3926) dependabot[bot] 2025-05-22 10:47:26 -04:00
  • 7bfb4c86a6
    fix(dotnet-deps-cataloger): avoid repeated dependency resolution (#3930) v1.26.1 Keith Zantow 2025-05-21 21:28:40 -04:00
  • 18ed8b60f8
    chore(deps): update tools to latest versions (#3921) anchore-actions-token-generator[bot] 2025-05-21 10:56:17 -04:00
  • b5e9f75ef1
    chore(deps): bump github.com/google/go-containerregistry (#3925) dependabot[bot] 2025-05-21 10:55:48 -04:00
  • ac883f52ed
    add cdx group as purl namespace (#3922) v1.26.0 Alex Goodman 2025-05-20 15:56:08 -04:00
  • e23ca43a83
    add PE binary cataloger (#3911) Alex Goodman 2025-05-19 14:17:09 -04:00
  • e841b03219 [wip] remove sqlite import win-sqless-build Alex Goodman 2025-05-19 11:50:45 -04:00
  • b4ca04001c
    chore: update dockerfile base images to latest rolling tags (#3915) Christopher Angelo Phillips 2025-05-19 09:43:14 -04:00
  • 828645ec27
    chore(deps): update CPE dictionary index (#3913) anchore-actions-token-generator[bot] 2025-05-19 09:16:25 -04:00
  • db77b54c01
    finalize go mod ref (#3908) v1.25.1 Alex Goodman 2025-05-16 13:36:26 -04:00
  • 2d4fe513ec
    remove benchmark workflow (#3906) v1.25.0 Alex Goodman 2025-05-16 11:08:43 -04:00
  • e1374f758e
    fix: update license content filtering default case to be 'none' for no content returned Christopher Angelo Phillips 2025-05-16 10:25:15 -04:00
  • 945893847f
    chore(deps): bump github/codeql-action from 3.28.17 to 3.28.18 (#3905) dependabot[bot] 2025-05-16 14:16:11 +00:00
  • 8cbdd38a63
    fix: Make Native Image contains no embedded SBOM Error Discoverable (#3805) sathiya06 2025-05-16 09:54:40 -04:00
  • 8f02bd85f6
    fix: Distinguish openjdk vs jdk when using file source (#3895) Adam McClenaghan 2025-05-16 14:29:53 +01:00
  • 0480b516f6
    chore: fix publishing test fixture images (#3896) Alex Goodman 2025-05-15 14:35:11 -04:00
  • 2a055690e6
    chore: delete unused fixture (#3901) Christopher Angelo Phillips 2025-05-15 13:30:36 -04:00
  • 4f73d35051
    Include default config licenses (#3900) Christopher Angelo Phillips 2025-05-15 12:48:18 -04:00
  • b369b02f4f
    Expose RPM signature information (for RPM DB and RPM archives) (#3179) Ralph Bean 2025-05-15 12:01:00 -04:00
  • 5effed06a8
    chore(deps): bump github.com/mholt/archives from 0.1.1 to 0.1.2 (#3898) dependabot[bot] 2025-05-15 10:23:30 -04:00
  • 5e25d52845
    chore(deps): bump anchore/sbom-action from 0.19.0 to 0.20.0 (#3899) dependabot[bot] 2025-05-15 10:23:20 -04:00
  • a8e5b25632
    Add PHP interpreter + extensions cataloger (#2585) Laurent Goderre 2025-05-15 08:22:50 -04:00
  • 0521ccaf5e
    chore: update fixtures based on CI builds (#3894) Alex Goodman 2025-05-14 17:30:20 -04:00
  • 3c7018a853
    feat: remove full-text before release (#3889) v1.24.0 Christopher Angelo Phillips 2025-05-14 09:12:05 -04:00
  • e5d7760bb8
    feat: improve dpkg cataloger license recognition for "license agreements" (#3888) Christopher Angelo Phillips 2025-05-14 08:41:48 -04:00
  • 175a6719a9
    Add cataloger for Dart pubspec (#3292) Laurent Goderre 2025-05-13 17:51:49 -04:00
  • f77d503892
    detect license ID from full text when incidentally provided as a value (#3876) Christopher Angelo Phillips 2025-05-13 16:37:18 -04:00
  • b4d717fb30
    chore: update mimetype contact info (#3887) Keith Zantow 2025-05-13 13:47:05 -04:00
  • 12d91f47dc
    Add a homebrew cataloger (#3724) Rez Moss 2025-05-13 13:01:41 -04:00
  • de88b973f8
    chore: fix some logging output (#3884) Weston Steimel 2025-05-13 12:15:19 +00:00
  • 59b880f26a
    order locations by container layer order (#3858) Alex Goodman 2025-05-13 00:02:07 -04:00
  • e3e69596bd
    Translate Portage license strings to SPDX expressions (#1763) Alex Goodman 2025-05-12 21:03:51 -04:00
  • 58392a9717
    fix: stop emitting redis redis CPE for PHP PECL redis (#3881) Will Murphy 2025-05-12 16:17:18 -04:00
  • 621d21eb04
    feat: Add PURL list input/output format (#3853) Keith Zantow 2025-05-12 13:33:24 -04:00
  • bea57a4f7d
    chore(deps): update CPE dictionary index (#3877) anchore-actions-token-generator[bot] 2025-05-12 09:56:30 -04:00
  • ff575b3f4d
    chore(deps): update tools to latest versions (#3878) anchore-actions-token-generator[bot] 2025-05-12 09:56:07 -04:00
  • f9d0fa81ab
    do not search binary contents for version for go package (#3874) Alex Goodman 2025-05-09 13:49:17 -04:00
  • abe5e27b4b
    fix: remove race when writing errors in generic cataloger (#3875) Alex Goodman 2025-05-09 13:46:47 -04:00
  • a7816dc9e7
    clear devel version for go packages (#3873) Alex Goodman 2025-05-09 13:36:52 -04:00