chore: bump github.com/aquasecurity/trivy from 0.69.3 to 0.70.0#1569
Open
dependabot[bot] wants to merge 3 commits into
Open
chore: bump github.com/aquasecurity/trivy from 0.69.3 to 0.70.0#1569dependabot[bot] wants to merge 3 commits into
dependabot[bot] wants to merge 3 commits into
Conversation
Bumps [github.com/aquasecurity/trivy](https://github.com/aquasecurity/trivy) from 0.69.3 to 0.70.0. - [Release notes](https://github.com/aquasecurity/trivy/releases) - [Changelog](https://github.com/aquasecurity/trivy/blob/main/CHANGELOG.md) - [Commits](aquasecurity/trivy@v0.69.3...v0.70.0) --- updated-dependencies: - dependency-name: github.com/aquasecurity/trivy dependency-version: 0.70.0 dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <support@github.com>
4ec3f18 to
1b7b045
Compare
Signed-off-by: Robert Cronin <robert.owen.cronin@gmail.com>
Contributor
There was a problem hiding this comment.
Pull request overview
This PR updates Copacetic’s Go module dependencies, primarily bumping Trivy to v0.70.0, and includes related dependency and integration-test adjustments needed to keep the build/tests aligned with the updated dependency graph.
Changes:
- Bump
github.com/aquasecurity/trivyfromv0.69.3tov0.70.0(plus related direct/indirect dependency updates fromgo mod tidy/resolver). - Update the bulk single-arch integration test to use Moby network/container types for registry port bindings.
- Refresh
go.sumto match the new resolved module set.
Reviewed changes
Copilot reviewed 2 out of 3 changed files in this pull request and generated 1 comment.
| File | Description |
|---|---|
| integration/bulk/singlearch_patch_test.go | Switch port-binding types/imports to Moby (network.PortMap, netip.Addr) consistent with updated dependencies. |
| go.mod | Bump Trivy and multiple other direct/indirect module versions. |
| go.sum | Update module checksums for the new dependency set. |
Comment on lines
+9
to
+13
| github.com/aquasecurity/trivy v0.70.0 | ||
| github.com/cenkalti/backoff/v4 v4.3.0 | ||
| github.com/charmbracelet/lipgloss v0.13.1 | ||
| github.com/containerd/errdefs v1.0.0 | ||
| github.com/containerd/platforms v1.0.0-rc.2 | ||
| github.com/containerd/platforms v1.0.0-rc.4 |
Codecov Report✅ All modified and coverable lines are covered by tests. Additional details and impacted files@@ Coverage Diff @@
## main #1569 +/- ##
=======================================
Coverage 41.16% 41.16%
=======================================
Files 58 58
Lines 10112 10112
=======================================
Hits 4163 4163
Misses 5653 5653
Partials 296 296 ☔ View full report in Codecov by Sentry. 🚀 New features to boost your workflow:
|
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Bumps github.com/aquasecurity/trivy from 0.69.3 to 0.70.0.
Release notes
Sourced from github.com/aquasecurity/trivy's releases.
Changelog
Sourced from github.com/aquasecurity/trivy's changelog.
... (truncated)
Commits
8a3177arelease: v0.70.0 [main] (#10105)974de49chore(deps): bump go.opentelemetry.io/otel/sdk from 1.42.0 to 1.43.0 (#10496)2175597chore(deps): bump github.com/sigstore/timestamp-authority/v2 from 2.0.3 to 2....50c7a1echore(deps): bump the common group across 1 directory with 8 updates (#10540)885fbcechore(deps): bump the docker group across 1 directory with 2 updates (#10538)7ee3e1efix: use Development category for GoReleaser discussions (#10530)6dbe369chore(deps): bump testcontainers-go to v0.42.0 (#10531)21e6888chore: update CODEOWNERS (#10529)35d28e8chore(deps): bump helm.sh/helm/v3 from 3.20.1 to 3.20.2 (#10511)6d40a98chore(deps): bump github.com/hashicorp/go-getter from 1.8.5 to 1.8.6 (#10510)