fix(deps): update module github.com/aquasecurity/trivy-operator to v0.22.0 #1034
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v0.17.1
->v0.22.0
Release Notes
aquasecurity/trivy-operator (github.com/aquasecurity/trivy-operator)
v0.22.0
Compare Source
Ref to Release Notes #2169
Changelog
✨ Notable Changes ✨
1d4ec56
: feat: dynamic compliance reports (#2160) (@chen-keinan)🐛 Notable Fixes 🐛
ec93a42
: fix: Prevent grouped vulnerability entries by including target and package path (#2140) (@kersten)5d266cf
: fix: helm param gcr service account auth (#2108) (@chen-keinan)181ebae
: fix: update olm defaults (#2138) (@chen-keinan)📝 Documentation 📝
3448c9e
: docs: add section on importing the Grafana dashboard using the Grafana Helm Chart (#2155) (@maritiren)🔧 Miscellaneous 🔧
74a7d44
: chore: bump github.com/hashicorp/go-getter-v1.7.5 (#2162) (@chen-keinan)d7f3484
: chore: make operator policies-config optional (#2152) (@chen-keinan)👷 Other work 👷
1c035b0
: build(deps): bump github.com/aquasecurity/trivy from 0.52.0 to 0.52.2 (#2149) (@dependabot[bot])d135915
: build(deps): bump github.com/aws/aws-sdk-go from 1.53.14 to 1.53.19 (#2133) (@dependabot[bot])08afd7f
: build(deps): bump github.com/aws/aws-sdk-go from 1.53.19 to 1.54.6 (#2157) (@dependabot[bot])d6632d9
: build(deps): bump github.com/aws/aws-sdk-go from 1.54.6 to 1.54.11 (#2164) (@dependabot[bot])19bf370
: build(deps): bump github.com/google/go-containerregistry (#2145) (@dependabot[bot])20acccc
: build(deps): bump golang.org/x/net from 0.25.0 to 0.26.0 (#2131) (@dependabot[bot])886550d
: build(deps): bump golang.org/x/text from 0.15.0 to 0.16.0 (#2129) (@dependabot[bot])bb9a08d
: build(deps): bump goreleaser/goreleaser-action from 5 to 6 (#2128) (@dependabot[bot])fbf4a75
: build(deps): bump k8s.io/apiextensions-apiserver from 0.30.1 to 0.30.2 (#2156) (@dependabot[bot])8bc9854
: build(deps): bump k8s.io/cli-runtime from 0.30.1 to 0.30.2 (#2148) (@dependabot[bot])2479a90
: build(deps): bump k8s.io/client-go from 0.30.1 to 0.30.2 (#2146) (@dependabot[bot])d9924b1
: build(deps): bump sigs.k8s.io/controller-runtime from 0.18.3 to 0.18.4 (#2130) (@dependabot[bot])af05935
: fix typos (#2154) (@maritiren)v0.21.3
Compare Source
Changelog
🐛 Notable Fixes 🐛
de3ddf5
: fix: failed to eval rego misconfig policy (#2125) (@chen-keinan)👷 Other work 👷
b45ed1e
: Added target field to metrics (#2122) (@kersten)v0.21.2
Compare Source
Changelog
🐛 Notable Fixes 🐛
20a8a5b
: fix: Add scanJobAnnotations to the Job instead of just the Pod (#2111) (@darkhelmet)dcbb19a
: fix: log failed container error (#2112) (@chen-keinan)f1dada8
: fix: non completed containers with invalid stacktrace (#2107) (@chen-keinan)f222fef
: fix: policies bundle insecure (#2100) (@chen-keinan)4cde7c1
: fix: set default value for useBuiltIntPolicies (#2114) (@chen-keinan)🔧 Miscellaneous 🔧
b4bab35
: chore: bump trivy 0.52.0 (#2115) (@chen-keinan)👷 Other work 👷
f048e86
: build(deps): bump docker/login-action from 3.1.0 to 3.2.0 (#2119) (@dependabot[bot])0babd17
: build(deps): bump github.com/aquasecurity/trivy from 0.51.2 to 0.51.4 (#2106) (@dependabot[bot])ce31865
: build(deps): bump github.com/aws/aws-sdk-go from 1.53.0 to 1.53.10 (#2105) (@dependabot[bot])7dea6fd
: build(deps): bump github.com/aws/aws-sdk-go from 1.53.10 to 1.53.14 (#2118) (@dependabot[bot])fc164c3
: build(deps): bump github.com/go-logr/logr from 1.4.1 to 1.4.2 (#2102) (@dependabot[bot])7f90963
: build(deps): bump github.com/onsi/ginkgo/v2 from 2.17.3 to 2.19.0 (#2103) (@dependabot[bot])12ebab1
: build(deps): bump sigs.k8s.io/controller-runtime from 0.18.2 to 0.18.3 (#2104) (@dependabot[bot])v0.21.1
Compare Source
Changelog
✨ Notable Changes ✨
d472cd6
: feat(helm): Add http/https proxy option in operator (#2087) (@bunseokbot)👮 Security updates👮
39e5f7f
: sec: cve-2023-42366 (#2085) (@chen-keinan)🔧 Miscellaneous 🔧
f284c83
: chore: auto bump minor golang version (#2093) (@chen-keinan)👷 Other work 👷
83ff5c0
: build(deps): bump k8s.io/api from 0.30.0 to 0.30.1 (#2092) (@dependabot[bot])8d22cdf
: build(deps): bump k8s.io/apiextensions-apiserver from 0.30.0 to 0.30.1 (#2090) (@dependabot[bot])25c69d7
: build(deps): bump k8s.io/cli-runtime from 0.30.0 to 0.30.1 (#2091) (@dependabot[bot])86c65a5
: build(deps): bump k8s.io/client-go from 0.30.0 to 0.30.1 (#2089) (@dependabot[bot])v0.21.0
Compare Source
Changelog
✨ Notable Changes ✨
8c62a23
: feat(helm): only deploy ClusterComplianceReports if enabled (#2027) (@elchenberg)96a010b
: feat: Add custom header options for webhook notification (#2044) (@bunseokbot)289f303
: feat: filter container by regex (#2080) (@chen-keinan)🐛 Notable Fixes 🐛
81cd4ca
: fix: cves high and critical (#2077) (@chen-keinan)727b9ab
: fix: node-collector cves high critical (#2075) (@chen-keinan)22d6898
: fix: the use of embedded checks, fallback for air-gapped env. (#2074) (@chen-keinan)fcfad91
: fix: trivy db repository credential set (#2064) (@kimtaehong)🔧 Miscellaneous 🔧
1cbf7bd
: chore: bump k8s.io libs-0.30.0 & fix lint issues (#2040) (@chen-keinan)40bcbe0
: chore: bump trivy 0.51.2 (#2081) (@chen-keinan)dca19ab
: chore: bump trivy-0.50.4 (#2041) (@chen-keinan)c19a52b
: chore: bump trivy-0.51.1 (#2054) (@chen-keinan)👷 Other work 👷
6f37df7
: build(deps): bump aquaproj/aqua-installer from 3.0.0 to 3.0.1 (#2065) (@dependabot[bot])4b1c6c3
: build(deps): bump github.com/aws/aws-sdk-go from 1.51.25 to 1.51.30 (#2047) (@dependabot[bot])8e350ab
: build(deps): bump github.com/aws/aws-sdk-go from 1.51.30 to 1.52.2 (#2058) (@dependabot[bot])e425d5e
: build(deps): bump github.com/aws/aws-sdk-go from 1.52.2 to 1.53.0 (#2069) (@dependabot[bot])cd737be
: build(deps): bump github.com/onsi/ginkgo/v2 from 2.17.1 to 2.17.2 (#2050) (@dependabot[bot])015e514
: build(deps): bump github.com/onsi/ginkgo/v2 from 2.17.2 to 2.17.3 (#2071) (@dependabot[bot])17d52b6
: build(deps): bump github.com/onsi/gomega from 1.32.0 to 1.33.0 (#2031) (@dependabot[bot])c66f771
: build(deps): bump github.com/onsi/gomega from 1.33.0 to 1.33.1 (#2070) (@dependabot[bot])c987127
: build(deps): bump github.com/prometheus/client_golang (#2068) (@dependabot[bot])ad73f01
: build(deps): bump golang.org/x/net from 0.24.0 to 0.25.0 (#2060) (@dependabot[bot])48984f0
: build(deps): bump golangci/golangci-lint-action from 4.0.0 to 5.1.0 (#2045) (@dependabot[bot])fd87877
: build(deps): bump golangci/golangci-lint-action from 5.1.0 to 5.3.0 (#2056) (@dependabot[bot])3c8dbab
: build(deps): bump golangci/golangci-lint-action from 5.3.0 to 6.0.1 (#2066) (@dependabot[bot])2720782
: build(deps): bump helm/kind-action from 1.9.0 to 1.10.0 (#2046) (@dependabot[bot])3d82ecc
: build(deps): bump k8s.io/cli-runtime from 0.29.3 to 0.30.0 (#2048) (@dependabot[bot])54c1d7a
: build(deps): bump sigs.k8s.io/controller-runtime (#2049) (@dependabot[bot])d567158
: build(deps): bump sigs.k8s.io/controller-runtime from 0.18.0 to 0.18.1 (#2059) (@dependabot[bot])10bbeff
: build(deps): bump sigs.k8s.io/controller-runtime from 0.18.1 to 0.18.2 (#2067) (@dependabot[bot])v0.20.1
Compare Source
Changelog
✨ Notable Changes ✨
ba16b57
: feat: add helm value for adding annotations to the trivy operator deployment (#1989) (@martijnvdp)eaf2b20
: feat: scan-job custom volumes (#2020) (@chen-keinan)0f9e0f8
: feat: separate toleration setting for node-collector (#2006) (@chen-keinan)🐛 Notable Fixes 🐛
8b906fd
: fix(helm): trivy server value typo (#2001) (@ABWassim)b56e499
: fix: add policies download err msg and fallback to embeded (#2000) (@chen-keinan)d810d14
: fix: better error handling for node config api data (#2004) (@chen-keinan)759019d
: fix: better handling for kubelet config (#2017) (@chen-keinan)9e8663c
: fix: log entry name on policy loader (#2013) (@chen-keinan)201d00a
: fix: typo fail download policy label (#2035) (@bunseokbot)👮 Security updates👮
a509895
: sec: update go-getter to latest version (#2023) (@Starttoaster)📝 Documentation 📝
f8bf366
: docs: add information on running Helm Chart in client server mode (#2005) (@AnaisUrlichs)ec64431
: docs: version callout (#2012) (@AnaisUrlichs)🔧 Miscellaneous 🔧
9b8c3e5
: chore: bump trivy-0.50.2 (#2037) (@chen-keinan)77c9675
: chore: update built-in checks package repository name (#2014) (@chen-keinan)👷 Other work 👷
1bf2c8f
: Updates ignorePolicy comments in values.yaml (#1988) (@KateFiroozi)4a06fc2
: build(deps): bump azure/setup-helm from 4.1.0 to 4.2.0 (#2029) (@dependabot[bot])a324c2d
: build(deps): bump github.com/aws/aws-sdk-go from 1.51.11 to 1.51.16 (#1990) (@dependabot[bot])3c03632
: build(deps): bump github.com/aws/aws-sdk-go from 1.51.16 to 1.51.21 (#2009) (@dependabot[bot])6146286
: build(deps): bump github.com/aws/aws-sdk-go from 1.51.21 to 1.51.25 (#2033) (@dependabot[bot])098e084
: build(deps): bump golang.org/x/net from 0.22.0 to 0.24.0 (#1991) (@dependabot[bot])83e64f2
: build(deps): bump sigs.k8s.io/controller-runtime from 0.17.2 to 0.17.3 (#2010) (@dependabot[bot])ef8f01b
: build(deps): bump sigstore/cosign-installer from 3.4.0 to 3.5.0 (#2011) (@dependabot[bot])v0.20.0
Compare Source
Changelog
✨ Notable Changes ✨
ba16b57
: feat: add helm value for adding annotations to the trivy operator deployment (#1989) (@martijnvdp)eaf2b20
: feat: scan-job custom volumes (#2020) (@chen-keinan)0f9e0f8
: feat: separate toleration setting for node-collector (#2006) (@chen-keinan)🐛 Notable Fixes 🐛
8b906fd
: fix(helm): trivy server value typo (#2001) (@ABWassim)b56e499
: fix: add policies download err msg and fallback to embeded (#2000) (@chen-keinan)d810d14
: fix: better error handling for node config api data (#2004) (@chen-keinan)759019d
: fix: better handling for kubelet config (#2017) (@chen-keinan)9e8663c
: fix: log entry name on policy loader (#2013) (@chen-keinan)👮 Security updates👮
a509895
: sec: update go-getter to latest version (#2023) (@Starttoaster)📝 Documentation 📝
f8bf366
: docs: add information on running Helm Chart in client server mode (#2005) (@AnaisUrlichs)ec64431
: docs: version callout (#2012) (@AnaisUrlichs)🔧 Miscellaneous 🔧
77c9675
: chore: update built-in checks package repository name (#2014) (@chen-keinan)👷 Other work 👷
1bf2c8f
: Updates ignorePolicy comments in values.yaml (#1988) (@KateFiroozi)a324c2d
: build(deps): bump github.com/aws/aws-sdk-go from 1.51.11 to 1.51.16 (#1990) (@dependabot[bot])3c03632
: build(deps): bump github.com/aws/aws-sdk-go from 1.51.16 to 1.51.21 (#2009) (@dependabot[bot])098e084
: build(deps): bump golang.org/x/net from 0.22.0 to 0.24.0 (#1991) (@dependabot[bot])83e64f2
: build(deps): bump sigs.k8s.io/controller-runtime from 0.17.2 to 0.17.3 (#2010) (@dependabot[bot])ef8f01b
: build(deps): bump sigstore/cosign-installer from 3.4.0 to 3.5.0 (#2011) (@dependabot[bot])v0.19.4
Compare Source
Changelog
🐛 Notable Fixes 🐛
a14724d
: fix: remove controller manager timeout (#1980) (@chen-keinan)v0.19.3
Compare Source
Changelog
🐛 Notable Fixes 🐛
228e0fe
: fix: add annotation job pod template spec (#1975) (@chen-keinan)2af353a
: fix: add appropriate info msg for not supported windows images (#1966) (@chen-keinan)8ca4b5f
: fix: configure context timeout for sync resources (#1974) (@chen-keinan)f38ca4e
: fix: handle non sha256 digest (#1967) (@chen-keinan)fa6f596
: fix: lazy loading of config-audit policies (#1958) (@chen-keinan)🔧 Miscellaneous 🔧
4cf0c1c
: chore: clean-up un-used folders and files (#1964) (@chen-keinan)👷 Other work 👷
b5b694b
: build(deps): bump actions/setup-python from 5.0.0 to 5.1.0 (#1968) (@dependabot[bot])b798f2c
: build(deps): bump github.com/aws/aws-sdk-go from 1.51.8 to 1.51.11 (#1969) (@dependabot[bot])9b856d5
: refactor: integration tests (#1962) (@chen-keinan)35b6806
: refactor: tests e2e config (#1963) (@chen-keinan)v0.19.2
Compare Source
Changelog
✨ Notable Changes ✨
380f5d3
: feat: Add existing secret to policies bundle (#1952) (@KevinDW-Fluxys)2432d4a
: feat: Helm, allow to define service type for metrics Service (#1929) (@ilpianista)🔧 Miscellaneous 🔧
5dcf4ef
: chore: bump trivy lib and scan-job v0.50.0 (#1949) (@chen-keinan)👷 Other work 👷
67faec0
: build(deps): bump aquaproj/aqua-installer from 2.3.0 to 3.0.0 (#1944) (@dependabot[bot])b5f6e90
: build(deps): bump github.com/aws/aws-sdk-go from 1.50.35 to 1.51.8 (#1950) (@dependabot[bot])1386a94
: build(deps): bump github.com/onsi/ginkgo/v2 from 2.16.0 to 2.17.1 (#1940) (@dependabot[bot])7e0814e
: build(deps): bump github.com/onsi/gomega from 1.31.1 to 1.32.0 (#1943) (@dependabot[bot])f4208c5
: build(deps): bump k8s.io/apiextensions-apiserver from 0.29.2 to 0.29.3 (#1941) (@dependabot[bot])1dc8c4c
: initialize logging earlier in the main function (#1935) (@Hacks4Snacks)v0.19.1
Compare Source
Changelog
🐛 Notable Fixes 🐛
2aa20ed
: fix: generate scan reports for individual completed containers when pod scan failed (#1917) (@chen-keinan)5aaa7de
: fix: load trivy-policies by config (#1928) (@chen-keinan)72722f4
: fix: node-collector respect pod requests/limits (#1927) (@chen-keinan)d62c500
: fix: support affinity for scan jobs (#1915) (@maxbrunet)📝 Documentation 📝
5134307
: docs: Improve documentation for ClusterVulnerabilityReports (#1910) (@sudoleg)🔧 Miscellaneous 🔧
0582f70
: chore: update ignore file values example (#1919) (@chen-keinan)👷 Other work 👷
2b8bd60
: build(deps): bump docker/login-action from 3.0.0 to 3.1.0 (#1926) (@dependabot[bot])b7248f2
: build(deps): bump github.com/google/go-containerregistry (#1924) (@dependabot[bot])0871dcd
: build(deps): bump k8s.io/cli-runtime from 0.29.2 to 0.29.3 (#1922) (@dependabot[bot])2ed26a2
: feat: refactor integration tests folders structure (#1914) (@chen-keinan)v0.19.0
Compare Source
Changelog
💔Breaking Change💔
sbom crd format has been changed following to latest cycloneDX format. execute the following before upgrade:
Changelog
✨ Notable Changes ✨
f6b4e47
: feat: Also publish chart to OCI registry (#1889) (@mkilchhofer)cce0c22
: feat: Enable passing values for operator through custom ConfigMap and/or Secrets (#1849) (@flash-me)b05764c
: feat: add extra labels for operator and server controllers in Helm chart (#1867) (@fhielpos)488e4e3
: feat: added configurable appProtocol to metrics service (#1871) (@seekermarcel)3fb8e61
: feat: opa exception support (#1845) (@chen-keinan)3209448
: feat: scan job secret ttl support (#1875) (@chen-keinan)50b60fd
: feat: ssl-cert dir support on init containers and built-in server (#1903) (@chen-keinan)b25e532
: feat: trivy policies bundle support (#1897) (@chen-keinan)🐛 Notable Fixes 🐛
048d77e
: fix: access to private regional gcr (#1869) (@dnskr)8cda161
: fix: false positive cis kubeletMakeIptablesUtilChainsArgumentSet (#1858) (@chen-keinan)👮 Security updates👮
83703a1
: sec: fix CVE-2024-26147 (#1877) (@chen-keinan)📝 Documentation 📝
ba33abd
: docs: Fix some links to other sections and websites (#1846) (@maltemorgenstern)338ed27
: docs: add documentation on how to install trivy-operator in a ns with default deny-all netpols (#1608) (@francRang)867f42b
: docs: remove unused badges (#1891) (@chen-keinan)🔧 Miscellaneous 🔧
43f8555
: chore: bump trivy-0.49.1 lib (#1859) (@chen-keinan)👷 Other work 👷
9800cd2
: build(deps): bump github.com/aws/aws-sdk-go from 1.50.10 to 1.50.21 (#1865) (@dependabot[bot])d899284
: build(deps): bump github.com/aws/aws-sdk-go from 1.50.21 to 1.50.25 (#1884) (@dependabot[bot])31413c4
: build(deps): bump github.com/aws/aws-sdk-go from 1.50.25 to 1.50.30 (#1894) (@dependabot[bot])5600921
: build(deps): bump github.com/aws/aws-sdk-go from 1.50.30 to 1.50.35 (#1904) (@dependabot[bot])6f4c351
: build(deps): bump github.com/onsi/ginkgo/v2 from 2.15.0 to 2.16.0 (#1905) (@dependabot[bot])6d08572
: build(deps): bump github.com/prometheus/client_golang (#1893) (@dependabot[bot])5070b31
: build(deps): bump github.com/stretchr/testify from 1.8.4 to 1.9.0 (#1892) (@dependabot[bot])be21684
: build(deps): bump golang.org/x/net from 0.20.0 to 0.21.0 (#1854) (@dependabot[bot])bf14a9d
: build(deps): bump golang.org/x/net from 0.21.0 to 0.22.0 (#1906) (@dependabot[bot])e502b1f
: build(deps): bump golangci/golangci-lint-action from 3.7.0 to 4.0.0 (#1852) (@dependabot[bot])ed2cac1
: build(deps): bump helm/kind-action from 1.8.0 to 1.9.0 (#1851) (@dependabot[bot])260612f
: build(deps): bump jdcargile/ms-teams-notification from 1.3 to 1.4 (#1882) (@dependabot[bot])508fb94
: build(deps): bump k8s.io/apiextensions-apiserver from 0.29.1 to 0.29.2 (#1883) (@dependabot[bot])a5867ce
: build(deps): bump k8s.io/apimachinery from 0.29.1 to 0.29.2 (#1864) (@dependabot[bot])3e5d006
: build(deps): bump k8s.io/cli-runtime from 0.29.1 to 0.29.2 (#1860) (@dependabot[bot])f957580
: build(deps): bump sigs.k8s.io/controller-runtime from 0.17.0 to 0.17.2 (#1861) (@dependabot[bot])v0.18.5
Compare Source
Changelog
✨ Notable Changes ✨
e13fb50
: feat(crds): add preserve unknown fields to all crds (#1839) (@rndmh3ro)🐛 Notable Fixes 🐛
896dc38
: fix: updated remediation for compliance and config audit (#1841) (@chen-keinan)📝 Documentation 📝
ddca9a2
: docs: Change broken link from defsec to trivy-policies (#1840) (@maltemorgenstern)d985b4a
](https://togithub.com/aquasecurity/trivy-operator/commit/d985b4a95a754148f44fe598f8c92fb61646ceConfiguration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Enabled.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR was generated by Mend Renovate. View the repository job log.