-
Notifications
You must be signed in to change notification settings - Fork 78
Permalink
Choose a base ref
{{ refName }}
default
Choose a head ref
{{ refName }}
default
Comparing changes
Choose two branches to see what’s changed or to start a new pull request.
If you need to, you can also or
learn more about diff comparisons.
Open a pull request
Create a new pull request by comparing changes across two branches. If you need to, you can also .
Learn more about diff comparisons here.
base repository: anchore/scan-action
Failed to load repositories. Confirm that selected base ref is valid, then try again.
Loading
base: v3.3.6
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
...
head repository: anchore/scan-action
Failed to load repositories. Confirm that selected head ref is valid, then try again.
Loading
compare: v3.3.7
Could not load branches
Nothing to show
Loading
Could not load tags
Nothing to show
{{ refName }}
default
Loading
- 10 commits
- 15 files changed
- 11 contributors
Commits on Jun 27, 2023
-
Configuration menu - View commit details
-
Copy full SHA for 487706f - Browse repository at this point
Copy the full SHA 487706fView commit details
Commits on Jul 6, 2023
-
* Add by-cve option to action options Signed-off-by: too-gee <116376+too-gee@users.noreply.github.com> * chore: update audit to use npm-better-audit * chore: modify workflow to use new audit script Signed-off-by: Christopher Phillips <christopher.phillips@anchore.com> --------- Signed-off-by: Keith Zantow <kzantow@gmail.com> Signed-off-by: too-gee <116376+too-gee@users.noreply.github.com> Signed-off-by: Christopher Phillips <christopher.phillips@anchore.com> Co-authored-by: Keith Zantow <kzantow@gmail.com> Co-authored-by: Christopher Phillips <christopher.phillips@anchore.com>
Configuration menu - View commit details
-
Copy full SHA for 355bbe9 - Browse repository at this point
Copy the full SHA 355bbe9View commit details
Commits on Jul 13, 2023
-
chore(deps): update Grype to v0.63.1 (#233)
Signed-off-by: GitHub <noreply@github.com> Co-authored-by: kzantow <kzantow@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for f44918e - Browse repository at this point
Copy the full SHA f44918eView commit details -
chore: add new exception for audit (#235)
Signed-off-by: Christopher Phillips <christopher.phillips@anchore.com>
Configuration menu - View commit details
-
Copy full SHA for f8d9cf1 - Browse repository at this point
Copy the full SHA f8d9cf1View commit details
Commits on Aug 28, 2023
-
chore(docs): update docker related actions to avoid warnings in workf…
…low (#240) Signed-off-by: Mykhailo Kuzmich <kuzmichm.its@gmail.com>
Configuration menu - View commit details
-
Copy full SHA for 966ad43 - Browse repository at this point
Copy the full SHA 966ad43View commit details
Commits on Nov 7, 2023
-
fix: updated semver version (#241)
While updating the action with a new grype version npm run audit fails because of an issue with semver being vulnerable. https://github.com/anchore/scan-action/actions/runs/6479148648/job/17592137397?pr=236 The upgrade of semver is also failing, so the action is stuck with an old grype version. This commit has an upgraded semver version and a recreated index.js Signed-off-by: Gian Carlo Pace <giancarlo.pace@gmail.com>
Configuration menu - View commit details
-
Copy full SHA for 6decf31 - Browse repository at this point
Copy the full SHA 6decf31View commit details
Commits on Nov 17, 2023
-
chore: add manual trigger to test workflow (#247)
Signed-off-by: Will Murphy <will.murphy@anchore.com>
Configuration menu - View commit details
-
Copy full SHA for 1ee3eaf - Browse repository at this point
Copy the full SHA 1ee3eafView commit details -
chore(deps): update Grype to v0.73.2; remove snapshot tests (#236)
* chore(deps): update Grype to v0.73.2 Signed-off-by: GitHub <noreply@github.com> * remove snapshot test; assert only valid SARIF Signed-off-by: Will Murphy <will.murphy@anchore.com> * make cmd arg assertions aware of debug Signed-off-by: Will Murphy <will.murphy@anchore.com> * put bundler vuln back from GHSA Signed-off-by: Will Murphy <will.murphy@anchore.com> --------- Signed-off-by: GitHub <noreply@github.com> Signed-off-by: Will Murphy <will.murphy@anchore.com> Co-authored-by: kzantow <kzantow@users.noreply.github.com> Co-authored-by: Will Murphy <will.murphy@anchore.com>
Configuration menu - View commit details
-
Copy full SHA for ba0a911 - Browse repository at this point
Copy the full SHA ba0a911View commit details
Commits on Nov 18, 2023
-
chore(deps): update Grype to v0.73.3 (#248)
Signed-off-by: GitHub <noreply@github.com> Co-authored-by: willmurphyscode <willmurphyscode@users.noreply.github.com>
Configuration menu - View commit details
-
Copy full SHA for eeb941f - Browse repository at this point
Copy the full SHA eeb941fView commit details
Commits on Nov 20, 2023
-
chore: address test flakes (#249)
* chore: bump jest timeout We're seeing this timeout triggered in CI. Signed-off-by: Will Murphy <will.murphy@anchore.com> * bump timeout in remaining tests Signed-off-by: Will Murphy <will.murphy@anchore.com> * chore: only run push tests on main Otherwise, we'd run tests twice for each PR; once because it was a PR, and once because someone pushed to a branch. Signed-off-by: Will Murphy <will.murphy@anchore.com> * chore: even higher jest timeout Signed-off-by: Will Murphy <will.murphy@anchore.com> * chore: install grype ahead of tests Signed-off-by: Will Murphy <will.murphy@anchore.com> * chore: comment test timeout Signed-off-by: Will Murphy <will.murphy@anchore.com> --------- Signed-off-by: Will Murphy <will.murphy@anchore.com>
Configuration menu - View commit details
-
Copy full SHA for 62370b5 - Browse repository at this point
Copy the full SHA 62370b5View commit details
There are no files selected for viewing