Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
0.57.1
->0.58.2
3.20.3
->3.21.2
1.23.3-bullseye
->1.23.5-bullseye
v1.62.2
->v1.63.4
v3.16.3
->v3.17.0
Warning
Some dependencies could not be looked up. Check the Dependency Dashboard for more information.
Release Notes
aquasecurity/trivy (docker.io/aquasec/trivy)
v0.58.2
Compare Source
Changelog
936f06a
release: v0.58.2 [release/v0.58] (#8216)f72d2bc
fix(misconf): allow null values only for tf variables [backport: release/v0.58] (#8238)2896367
fix(suse): SUSE - update OSType constants and references for compatility [backport: release/v0.58] (#8237)b733ecc
fix: CVE-2025-21613 and CVE-2025-21614 : go-git: argument injection via the URL field [backport: release/v0.58] (#8215)v0.58.1
Compare Source
⚡Release highlights and summary⚡
👉 https://github.com/aquasecurity/trivy/discussions/8171
Changelog
https://github.com/aquasecurity/trivy/blob/release/v0.58/CHANGELOG.md#0581-2024-12-24
v0.58.0
Compare Source
Features
workspaceRelationship
(#7889) (d622ca2)go.mod
main module in the parser (#7977) (5448ba2)flavors
support (#7858) (b9b383e)Bug Fixes
UID
for removed packages (#7887) (07915da)mirror.gcr.io
(#7953) (9988147)root/buildinfo/content_manifests/
contains files that are notcontentSets
files (#7912) (38775a5)git@github.com
schema for misconfigs insarif
report (#7898) (19aea4b)golangci/golangci-lint (golangci/golangci-lint)
v1.63.4
Compare Source
dupl
,gomodguard
,revive
: keep only Go-files.v1.63.3
Compare Source
gofmt
,gofumpt
,goimports
,gci
: panic with several trailing EOLgoheader
: skip issues with invalid positionsv1.63.2
Compare Source
gofmt
,gofumpt
,goimports
,gci
: panic with missing trailing EOLv1.63.1
Compare Source
cgi
: invalid reports with cgogofumpt
: panic with autofix and cgov1.63.0
Compare Source
gofmt
,goimports
,gofumpt
,gci
) are applied after the suggested fixes.exptostd
linter https://github.com/ldez/exptostdnilnesserr
linter https://github.com/alingse/nilnesserrusetesting
linter https://github.com/ldez/usetestinggci
: new options:no-inline-comments
,no-prefix-comments
gomoddirectives
: from 0.2.4 to 0.6.0 (new options:go-version-pattern
,toolchain-pattern
,toolchain-forbidden
,tool-forbidden
,go-debug-forbidden
)govet
: newstdversion
,waitgroup
analyzersimportas
: allow multiple empty aliasesloggercheck
: newslog
optionrecvcheck
: from 0.1.2 to 0.2.0 (new options:disable-builtin
,exclusions
)tagliatelle
: from 0.5.0 to 0.7.1 (new options:ignored-fields
,extended-rules
,overrides
,pkg
,ignore
)usestdlibvars
: from 1.27.0 to 1.28.0 (autofix)wrapcheck
: from 2.9.0 to 2.10.0 (new option:extra-ignore-sigs
)asciicheck
: from 0.2.0 to 0.3.0bodyclose
: from5742072
toed6a65f
funlen
: from 0.1.0 to 0.2.0ginkgolinter
: from 0.18.3 to 0.18.4gochecksumtype
: from 0.2.0 to 0.3.1gocognit
: from 1.1.3 to 1.2.0godot
: from 1.4.18 to 1.4.20goheader
: report position improvementgosec
: handling of global nosec option when it is falseiface
: from 1.2.1 to 1.3.0importas
: from 0.1.0 to 0.2.0intrange
: from 0.2.1 to 0.3.0makezero
: from 1.1.1 to 1.2.0mirror
: from 1.2.0 to 1.3.0nilnil
: from 1.0.0 to 1.0.1nosprintfhostport
: from 0.1.1 to 0.2.0reassign
: from 0.2.0 to 0.3.0spancheck
: from 0.6.2 to 0.6.4tagalign
: from 1.3.4 to 1.4.1wastedassign
: from 2.0.7 to 2.1.0whitespace
: from 0.1.1 to 0.2.0wsl
: from 4.4.1 to 4.5.0output.uniq-by-line
is deprecated and replaced byissues.uniq-by-line
.decoder
,sloglint
,tagalin
fromformat
preset.run.timeout
<= 0.helm/helm (helm/helm)
v3.17.0
: Helm v3.17.0Compare Source
Helm v3.17.0 is a feature release. Users are encouraged to upgrade for the best experience.
The community keeps growing, and we'd love to see you there!
Notable Changes
--take-ownership
flag for install and upgrade commandstoYamlPretty
template functionInstallation and Upgrading
Download Helm v3.17.0. The common platform binaries are here:
This release was signed with 208D D36E D5BB 3745 A167 43A4 C7C6 FBB5 B91C 1155 and can be found at @r6by keybase account. Please use the attached signatures for verifying this release using gpg.
The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with
bash
.What's Next
Changelog
301108e
(Matt Farina)949b2e6
(Terry Howe)aba95b9
(Terry Howe)c3e5217
(Terry Howe)33a0ee7
(dependabot[bot])79993d2
(cx)037c18a
(Matt Farina)9f620b8
(Matt Farina)ba180a3
(dnskr)7321579
(Niladri Halder)build-test
action ondev-v3
branch2042f7d
(George Jenkins)a3a9e4f
(Matt Farina)c7cd177
(dependabot[bot])ca61226
(dependabot[bot])9421fac
(dependabot[bot])562eb54
(dependabot[bot])6ba4c6e
(dependabot[bot])ac16258
(dependabot[bot])edf7b66
(Mayank Shah)b9d58a1
(Mayank Shah)2541e46
(Mayank Shah)c40cf00
(George Jenkins)3c2ab91
(Ryan Nowak)7a22dd2
(Evans Mungai)885e938
(Mayank Shah)7efa286
(Mayank Shah)c3a5f27
(Mayank Shah)b5a83ea
(Matt Farina)a2d289f
(dependabot[bot])e4062e7
(wangjingcun)6f2f7d4
(Taylor Jasko)helm/pkg/kube/client_test.go
to coverwait.go
9fd943b
(Alex Johnson)0cc78c6
(Zach Burgess)029e983
(Matt Farina)f4f4a6b
(Suleiman Dibirov)a51ea6e
(Tianle Xu)f983342
(dependabot[bot])c867af8
(dependabot[bot])de9e138
(wangjingcun)e4304bd
(dependabot[bot])7e6b34d
(Robert Sirchia)16a4e37
(Robert Sirchia)bdaa93b
(Evans Mungai)3c4d0bb
(Evans Mungai)d25b0d9
(Evans Mungai)3a5805e
(Evans Mungai)a205af7
(Robert Sirchia)4a15cc3
(George Jenkins)999b851
(Robert Sirchia)79a1f2c
(Andreas Karis)ca58464
(Jon Olsson)fe4d0d9
(dependabot[bot])8b85934
(Evans Mungai)75c124a
(Evans Mungai)b45680c
(dependabot[bot])140a376
(dependabot[bot])ab3c589
(Luis Davim)d517450
(dependabot[bot])30de3bb
(Bryan Honof)076bb1f
(Josh Dolitsky)f5fcae8
(George Jenkins)02ef83f
(George Jenkins)4c54d15
(dependabot[bot])cdbef2b
(ricardo.bartels@telekom.de)9e192b2
(dependabot[bot])36f0b42
(Robert Sirchia)d5df067
(dependabot[bot])7925733
(dependabot[bot])9c36d1f
(George Jenkins)2cd8d54
(dependabot[bot])de18ac1
(Terry Howe)4735f2b
(myeunee)a8750f4
(Robert Sirchia)b203cc1
(Adam Korczynski)e432f39
(Adam Korczynski)49cb14a
(Yarden Shoham)ef85fa7
(Nathan Baulch)ff9dd26
(Nathan Baulch)62069eb
(Robert Sirchia)114db17
(Robert Sirchia)8642225
(Robert Sirchia)5217ea8
(Robert Sirchia)9134b9e
(dependabot[bot])144e7b0
(dependabot[bot])ddead08
(Rui Chen)611fae3
(Robert Sirchia)c81bd89
(Matt Farina)e7b25ba
(Robert Sirchia)a55c0b4
(Calvin A. Allen)2b6f76c
(Richard Hooper)06afebb
(dependabot[bot])9f6925e
(dependabot[bot])5326d79
(Robert Sirchia)d911881
(Robert Sirchia)1aa640f
(Robert Sirchia)0eae854
(Robert Sirchia)438221f
(Robert Sirchia)3ef6dd4
(Robert Sirchia)5f15f53
(Robert Sirchia)4df7d56
(Robert Sirchia)d644da6
(Matt Farina)a77ad1a
(dependabot[bot])88fa81e
(Robert Sirchia)76b9d96
(Robert Sirchia)38dd4a7
(Robert Sirchia)1ad6af9
(Robert Sirchia)e46e0dd
(Robert Sirchia)6757f8a
(Robert Sirchia)031b344
(Robert Sirchia)7e3df4b
(Robert Sirchia)b351fdc
(Robert Sirchia)6761729
(Robert Sirchia)b4caed9
(harshitasao)a71eaea
(Rauno Viskus)ae17dea
(harshitasao)0687961
(Evans Mungai)b9bdeca
(Dr. Stefan Schimanski)af13b0d
(ricardo.bartels@telekom.de)154b477
(ricardo.bartels@telekom.de)12d8d28
(Evans Mungai)0ad80e3
(Evans Mungai)837ae42
(Evans Mungai)7672a17
(Evans Mungai)e0751f3
(Nick Josevski)3c39705
(Matt Clegg)application/gzip,application/octet-stream
accept header when downloading chartfff3547
(Matt Clegg)9c0b4c8
(Bhargav Ravuri)ab640a7
(Trenton VanderWert)4a45342
(Trenton VanderWert)dc158f6
(Evans Mungai)toYamlPretty
template function73f1dcc
(Fred Heinecke)266ab5a
(Dominik Müller)f550eda
(Dominik Müller)v3.16.4
: Helm v3.16.4Compare Source
Helm v3.16.4 is a patch release. Users are encouraged to upgrade for the best experience. Users are encouraged to upgrade for the best experience.
The community keeps growing, and we'd love to see you there!
Installation and Upgrading
Download Helm v3.16.4. The common platform binaries are here:
This release was signed with
672C 657B E06B 4B30 969C 4A57 4614 49C2 5E36 B98E
and can be found at @mattfarina keybase account. Please use the attached signatures for verifying this release usinggpg
.The Quickstart Guide will get you going from there. For upgrade instructions or detailed installation notes, check the install guide. You can also use a script to install on any system with
bash
.What's Next
Changelog
7877b45
(dependabot[bot])848e586
(dependabot[bot])Configuration
📅 Schedule: Branch creation - "on the first day of the month" in timezone Europe/Berlin, Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.