Skip to content

chore(deps): update ghcr.io/google/osv-scanner docker tag to v1.8.3

Renovate Bot requested to merge renovate/ghcr.io-google-osv-scanner-1.x into main

This MR contains the following updates:

Package Type Update Change
ghcr.io/google/osv-scanner image-name minor v1.7.4 -> v1.8.3

Release Notes

google/osv-scanner (ghcr.io/google/osv-scanner)

v1.8.3

Compare Source

Features:
Fixes:
  • Bug #​1115 Ensure that semantic is passed a valid models.Ecosystem.
  • Bug #​1140 Add Maven dependency management to override client.
  • Bug #​1149 Handle Maven parent relative path.
Misc:

v1.8.2

Compare Source

Features:
Fixes:
  • Bug #​769 Fixed missing vulnerabilities for debian purls for --experimental-local-db.
  • Bug #​1055 Ensure that package exists in affected property.
  • Bug #​1072 Filter out unimportant vulnerabilities from vuln group.
  • Bug #​1077 Fix rate osv-scanner deadlock.
  • Bug #​924 Ensure that npm dependencies retain their "production" grouping.

v1.8.1

Compare Source

Features:
  • Feature #​35 OSV-Scanner now scans transitive dependencies in Maven pom.xml files! See our documentation for more information.
  • Feature #​944 The osv-scanner.toml configuration file can now filter specific packages with new [[PackageOverrides]] sections:
    [[PackageOverrides]]

Configuration

📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever MR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this MR and you won't be reminded about this update again.


  • If you want to rebase/retry this MR, check this box

This MR has been generated by Renovate Bot.

Edited by Renovate Bot

Merge request reports