Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

chore(deps): bump grype and syft #55

Merged
merged 1 commit into from
Nov 3, 2023
Merged

chore(deps): bump grype and syft #55

merged 1 commit into from
Nov 3, 2023

Conversation

paralta
Copy link
Contributor

@paralta paralta commented Nov 3, 2023

Description

Bump grype and syft to fix vulnerability scan failing at decoding SBOM results.
Go 1.21.1 required by github.com/anchore/grype@v0.72.0

Type of Change

[ ] Bug Fix
[ ] New Feature
[ ] Breaking Change
[ ] Refactor
[ ] Documentation
[x] Other (please describe) Dependencies

Checklist

  • I have read the contributing guidelines
  • Existing issues have been referenced (where applicable)
  • I have verified this change is not present in other open pull requests
  • Functionality is documented
  • All code style checks pass
  • New code contribution is covered by automated tests
  • All new and existing tests pass

@paralta paralta added the dependencies Pull requests that update a dependency file label Nov 3, 2023
@paralta paralta self-assigned this Nov 3, 2023
@paralta paralta requested a review from a team as a code owner November 3, 2023 13:39
@paralta paralta added this pull request to the merge queue Nov 3, 2023
Merged via the queue into main with commit 473f70d Nov 3, 2023
3 checks passed
@paralta paralta deleted the bump-grype-syft branch November 3, 2023 14:32
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
dependencies Pull requests that update a dependency file
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants