chore(deps): update ghcr.io/google/osv-scanner docker tag to v1.9.2
This MR contains the following updates:
| Package | Type | Update | Change |
|---|---|---|---|
| ghcr.io/google/osv-scanner | image-name | patch |
v1.9.1 -> v1.9.2
|
Release Notes
google/osv-scanner (ghcr.io/google/osv-scanner)
v1.9.2
Changelog
Fixes:
- Bug #1327 Parsing crash on malformed pnpm lockfile.
- Bug #1377 Warn if a vulnerability is ignored multiple times in the same config.
- Bug #1394 Guided remediation: handle extraneous/missing packages in package-lock.json more leniently.
- Bug #1443 Go call analysis now works with Go version up to v1.23.4.
- Bug #1436 Only fetch Maven snapshots and releases when enabled.
- Bug #1456 Remove redundant calls from PreFetch.
New Contributors
- @ivmeta made their first contribution in https://github.com/google/osv-scanner/pull/1327
- @janniclas made their first contribution in https://github.com/google/osv-scanner/pull/1398
Full Changelog: https://github.com/google/osv-scanner/compare/v1.9.1...v1.9.2
Configuration
-
If you want to rebase/retry this MR, check this box
This MR has been generated by Renovate Bot.