Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
🤖 I have created a release beep boop
0.56.0 (2024-09-18)
⚠ BREAKING CHANGES
Features
log.FilePath()
function for logger (#7080) (1f5f348)environment.yaml
files (#6569) (e3bef02)--vuln-type
flag to--pkg-types
flag (#7104) (7cbdb0a)environment.yml
files (#6953) (654217a)toolchain
asstdlib
version forgo.mod
files (#7163) (2d80769)test
scope support forpom.xml
files (#7414) (2d97700)maven-metadata.xml
files for remote snapshot repositories. (#6950) (1f8fca1)maven-invoker-plugin
integration tests pom.xml files asDev
(#6213) (617c3e3)requirement.txt
files (#6782) (29615be)requirement.txt
files (#6729) (2bc54ad)SPDX
andCycloneDX
reports (#7257) (4a2f492)CycloneDX v1.6
(#6903) (09e50ce)--path-prefix
flag for client/server mode (#7321) (24a4563)--skip-images
scanning flag (#6334) (e739ab8)--detection-priority
flag for accuracy tuning (#7288) (fd8348d)--pkg-relationships
(#7237) (5c37361)Bug Fixes
file-patterns
and scan.conan2
cache dir (#6949) (38b35dd)DedicatedMasterEnabled
parsing issue (#6439) (74e4c6e)pip
deps forenvironment.yml
files (#6675) (150a773)advisory.url
(#6952) (417212e)trivy-db
andtrivy-java-db
registries by default (#6219) (96bd7ac)*.deps.json
files (#7039) (5bc662b)nuget package dir not found
log only when checkingnuget
packages (#7194) (d76feba)--clear-cache
(#7281) (2a0e529)gobinaries
(#6710) (c96f2a5).version
|.ver
(no prefixes) ldflags forgobinaries
(#6705) (afb4f9d)kind
andapiVersion
ofvolumeClaimTemplate
element (#7362) (da4ebfa)image.inspect.Created
field only for non-empty values (#6948) (0af5730)pom.properties
files fromjars
(#6164) (8221473)pom
init
dir are not found (#7245) (4e54a7e)pom.xml
files once (#6312) (7c409fd)pom.xml
file snapshot artifacts from remote repositories (#6412) (34ab09d)dependencyManagement
from root/child pom's for dependencies from parents (#7497) (5442949)go-mvn-version
to removePackage
duplicates (#7088) (a7a304d),
,or
, etc. (#6916) (52f7aa5)package.json
(#6268) (12c5bf0)workspaces
frompackage.json
as an object (#6231) (f85c9fa)importers
to detect dev deps from pnpm-lock.yaml file (#7387) (fd9ed3a)latest
version for filesyarn.lock
+package.json
(#7110) (54bb8bd)package-lock.json
file is broken (#6858) (cf5aa33)pnpm
with cyclic imports (#6857) (7d083bc)Indirect
,Dev
,ExternalReferences
fields for same deps frompackage-lock.json
files v2 or later (#6356) (258d153)--insecure
(#7022) (3d02a31)requirements.txt
files. (#6804) (ea3a124)poetry.lock
andpyproject.toml
in lowercase (#6852) (faa9d92).vulnerabilities[].identifiers[].url
whengitlab.tpl
is used (#6348) (1870f28)Message
field inasff.tpl
template (#7401) (dd9733e)ExperimentalModifiedFindings
(#7463) (7ff9aff)CreationInfo
to nil when detecting SPDX created using Trivy (#6346) (e866bd5)srcEpoch
when decoding SBOM files (#6866) (04af59c)convert
mode when scanning json file derived from sbom file (#6808) (f92ea09)purl
for maven pkgs (#7008) (a76e328)NOASSERTION
for licenses fields in SPDX formats (#7403) (c96dcdd)purl
forbitnami
pkg names (#6982) (7eabb92)Asymmetric Private Key
shouldn't start with space (#6867) (bb26445)hugging-face-access-token
(#7216) (8c87194).eyJ
keyword for JWT secret (#7410) (bf64003)Packages
in client/server mode (#6366) (a2482c1)0600
perms for tmp files for post analyzers (#6386) (9d7f5c9)Performance Improvements
bytes.Index
inemptyLineSplit
to cut allocation (#7065) (acbec05)Reverts
test
scope forpom.xml
files (#7488) (b0222fe)This PR was generated with Release Please. See documentation.