Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

deps: update module github.com/anchore/grype to v0.86.1 #538

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

renovate[bot]
Copy link
Contributor

@renovate renovate bot commented Sep 13, 2024

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
github.com/anchore/grype v0.80.0 -> v0.86.1 age adoption passing confidence

Release Notes

anchore/grype (github.com/anchore/grype)

v0.86.1

Compare Source

Security Fixes
Bug Fixes
Additional Changes

(Full Changelog)

v0.86.0

Compare Source

Added Features
Bug Fixes
Breaking Changes
Additional Changes

(Full Changelog)

v0.85.0

Compare Source

Added Features
Bug Fixes
Additional Changes

(Full Changelog)

v0.84.0

Compare Source

Added Features
Bug Fixes
Additional Changes

(Full Changelog)

v0.83.0

Compare Source

Added Features

(Full Changelog)

v0.82.2

Compare Source

Bug Fixes
Additional Changes

(Full Changelog)

v0.82.1

Compare Source

Bug Fixes
Additional Changes

(Full Changelog)

v0.82.0

Compare Source

Added Features
Bug Fixes
Breaking Changes
Additional Changes

(Full Changelog)

v0.81.0

Compare Source

Added Features

(Full Changelog)

v0.80.2

Compare Source

Bug Fixes
Additional Changes

(Full Changelog)

v0.80.1

Compare Source

Bug Fixes
Additional Changes

(Full Changelog)


Configuration

📅 Schedule: Branch creation - "every weekend" in timezone Europe/Berlin, Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

@renovate renovate bot added the kind/dependencies Pull requests that update a dependency file label Sep 13, 2024
Copy link
Contributor Author

renovate bot commented Sep 13, 2024

ℹ Artifact update notice

File name: go.mod

In order to perform the update(s) described in the table above, Renovate ran the go get command, which resulted in the following additional change(s):

  • 40 additional dependencies were updated
  • The go directive was updated for compatibility reasons

Details:

Package Change
go 1.22.5 -> 1.23.3
github.com/anchore/stereoscope v0.0.3 -> v0.0.9
github.com/anchore/syft v1.11.1 -> v1.17.0
dario.cat/mergo v1.0.0 -> v1.0.1
github.com/Masterminds/semver/v3 v3.2.1 -> v3.3.0
github.com/Masterminds/sprig/v3 v3.2.3 -> v3.3.0
github.com/adrg/xdg v0.5.0 -> v0.5.3
github.com/anchore/clio v0.0.0-20240522144804-d81e109008aa -> v0.0.0-20241115144204-29e89f9fa837
github.com/anchore/fangs v0.0.0-20240508143433-f016b099950f -> v0.0.0-20241014225144-4e1713cafd77
github.com/charmbracelet/lipgloss v0.12.1 -> v1.0.0
github.com/charmbracelet/x/ansi v0.1.4 -> v0.4.5
github.com/containerd/errdefs v0.1.0 -> v0.3.0
github.com/cyphar/filepath-securejoin v0.2.4 -> v0.2.5
github.com/github/go-spdx/v2 v2.3.1 -> v2.3.2
github.com/huandu/xstrings v1.4.0 -> v1.5.0
github.com/mattn/go-runewidth v0.0.15 -> v0.0.16
github.com/pelletier/go-toml/v2 v2.2.0 -> v2.2.2
github.com/saferwall/pe v1.5.4 -> v1.5.5
github.com/shopspring/decimal v1.3.1 -> v1.4.0
github.com/spf13/viper v1.18.2 -> v1.19.0
golang.org/x/exp v0.0.0-20240325151524-a685a6edb6d8 -> v0.0.0-20240719175910-8a7402abbf56
github.com/CycloneDX/cyclonedx-go v0.9.0 -> v0.9.1
github.com/ProtonMail/go-crypto v1.0.0 -> v1.1.2
github.com/anchore/packageurl-go v0.1.1-0.20240507183024-848e011fc24f -> v0.1.1-0.20241018175412-5c22e6360c4f
github.com/bmatcuk/doublestar/v4 v4.6.1 -> v4.7.1
github.com/containerd/containerd v1.7.14 -> v1.7.23
github.com/docker/cli v27.1.1+incompatible -> v27.3.1+incompatible
github.com/docker/docker v27.1.2+incompatible -> v27.3.1+incompatible
github.com/gabriel-vasile/mimetype v1.4.5 -> v1.4.7
github.com/go-git/go-billy/v5 v5.5.0 -> v5.6.0
github.com/sylabs/sif/v2 v2.17.1 -> v2.20.0
golang.org/x/crypto v0.27.0 -> v0.29.0
golang.org/x/mod v0.21.0 -> v0.22.0
golang.org/x/net v0.28.0 -> v0.31.0
golang.org/x/sync v0.8.0 -> v0.9.0
golang.org/x/term v0.24.0 -> v0.26.0
gorm.io/gorm v1.25.11 -> v1.25.12
modernc.org/sqlite v1.32.0 -> v1.34.1
github.com/spf13/cast v1.6.0 -> v1.7.0
golang.org/x/sys v0.25.0 -> v0.27.0
golang.org/x/text v0.18.0 -> v0.20.0

@github-actions github-actions bot added the size/M Denotes a PR that changes 30-99 lines, ignoring generated files. label Sep 13, 2024
@renovate renovate bot changed the title deps: update module github.com/anchore/grype to v0.80.1 deps: update module github.com/anchore/grype to v0.81.0 Sep 27, 2024
@renovate renovate bot force-pushed the renovate/jackfan.us.kg-anchore-grype-0.x branch from 9b0206b to d700b54 Compare September 27, 2024 22:29
@renovate renovate bot force-pushed the renovate/jackfan.us.kg-anchore-grype-0.x branch from d700b54 to 5b8e104 Compare October 11, 2024 22:26
@renovate renovate bot changed the title deps: update module github.com/anchore/grype to v0.81.0 deps: update module github.com/anchore/grype to v0.82.0 Oct 11, 2024
@github-actions github-actions bot added size/L Denotes a PR that changes 100-499 lines, ignoring generated files. and removed size/M Denotes a PR that changes 30-99 lines, ignoring generated files. labels Oct 11, 2024
@renovate renovate bot force-pushed the renovate/jackfan.us.kg-anchore-grype-0.x branch from 5b8e104 to 64ada50 Compare October 19, 2024 01:12
@renovate renovate bot changed the title deps: update module github.com/anchore/grype to v0.82.0 deps: update module github.com/anchore/grype to v0.82.1 Oct 19, 2024
@renovate renovate bot force-pushed the renovate/jackfan.us.kg-anchore-grype-0.x branch from 64ada50 to 5216180 Compare October 26, 2024 00:17
@renovate renovate bot changed the title deps: update module github.com/anchore/grype to v0.82.1 deps: update module github.com/anchore/grype to v0.82.2 Oct 26, 2024
@renovate renovate bot force-pushed the renovate/jackfan.us.kg-anchore-grype-0.x branch from 5216180 to 94926b2 Compare November 2, 2024 00:47
@renovate renovate bot changed the title deps: update module github.com/anchore/grype to v0.82.2 deps: update module github.com/anchore/grype to v0.83.0 Nov 2, 2024
@renovate renovate bot force-pushed the renovate/jackfan.us.kg-anchore-grype-0.x branch from 94926b2 to b86375c Compare November 9, 2024 00:56
@renovate renovate bot changed the title deps: update module github.com/anchore/grype to v0.83.0 deps: update module github.com/anchore/grype to v0.84.0 Nov 9, 2024
@renovate renovate bot force-pushed the renovate/jackfan.us.kg-anchore-grype-0.x branch from b86375c to 493bc42 Compare November 23, 2024 01:22
@renovate renovate bot changed the title deps: update module github.com/anchore/grype to v0.84.0 deps: update module github.com/anchore/grype to v0.85.0 Nov 23, 2024
@renovate renovate bot force-pushed the renovate/jackfan.us.kg-anchore-grype-0.x branch from 493bc42 to 6b24881 Compare December 14, 2024 00:26
@renovate renovate bot changed the title deps: update module github.com/anchore/grype to v0.85.0 deps: update module github.com/anchore/grype to v0.86.1 Dec 14, 2024
Copy link
Contributor Author

renovate bot commented Dec 14, 2024

⚠️ Artifact update problem

Renovate failed to update an artifact related to this branch. You probably do not want to merge this PR as-is.

♻ Renovate will retry this branch, including artifacts, only when one of the following happens:

  • any of the package files in this branch needs updating, or
  • the branch becomes conflicted, or
  • you click the rebase/retry checkbox if found above, or
  • you rename this PR's title to start with "rebase!" to trigger it manually

The artifact failure details are included below:

File name: go.sum
Command failed: go get -d -t ./...
go: -d flag is deprecated. -d=true is a no-op
go: downloading github.com/anchore/grype v0.86.1
go: downloading github.com/anchore/syft v1.18.1
go: downloading golang.org/x/mod v0.22.0
go: downloading github.com/andybalholm/brotli v1.1.1
go: downloading github.com/klauspost/compress v1.17.11
go: downloading github.com/anchore/packageurl-go v0.1.1-0.20241018175412-5c22e6360c4f
go: downloading github.com/anchore/archiver/v3 v3.5.3-0.20241210171143-5b1d8d1c7c51
go: downloading github.com/anchore/clio v0.0.0-20241115144204-29e89f9fa837
go: downloading dario.cat/mergo v1.0.1
go: downloading github.com/ProtonMail/go-crypto v1.1.3
go: downloading github.com/go-git/go-billy/v5 v5.6.0
go: downloading github.com/anchore/fangs v0.0.0-20241014225144-4e1713cafd77
go: downloading gorm.io/gorm v1.25.12
go: downloading github.com/OneOfOne/xxhash v1.2.8
go: downloading github.com/github/go-spdx/v2 v2.3.2
go: downloading github.com/CycloneDX/cyclonedx-go v0.9.2
go: downloading github.com/charmbracelet/lipgloss v1.0.0
go: downloading github.com/Masterminds/sprig/v3 v3.3.0
go: downloading github.com/saferwall/pe v1.5.6
go: downloading golang.org/x/exp v0.0.0-20240719175910-8a7402abbf56
go: downloading github.com/cyphar/filepath-securejoin v0.2.5
go: downloading github.com/spf13/viper v1.19.0
go: downloading modernc.org/sqlite v1.34.2
go: downloading github.com/charmbracelet/x/ansi v0.4.5
go: downloading github.com/mattn/go-runewidth v0.0.16
go: downloading github.com/Masterminds/semver/v3 v3.3.0
go: downloading github.com/huandu/xstrings v1.5.0
go: downloading github.com/shopspring/decimal v1.4.0
go: downloading github.com/spf13/cast v1.7.0
go: downloading github.com/magiconair/properties v1.8.9
go: downloading github.com/pelletier/go-toml/v2 v2.2.2
go: github.com/ckotzbauer/vulnerability-operator/internal/vuln/grype imports
	github.com/anchore/grype/grype/matcher: cannot find module providing package github.com/anchore/grype/grype/matcher
go: github.com/ckotzbauer/vulnerability-operator/internal/vuln/grype imports
	github.com/anchore/grype/grype/store: cannot find module providing package github.com/anchore/grype/grype/store

@github-actions github-actions bot added size/XS Denotes a PR that changes 0-9 lines, ignoring generated files. and removed size/L Denotes a PR that changes 100-499 lines, ignoring generated files. labels Dec 14, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
kind/dependencies Pull requests that update a dependency file size/XS Denotes a PR that changes 0-9 lines, ignoring generated files.
Projects
None yet
Development

Successfully merging this pull request may close these issues.

0 participants