Skip to content
This repository was archived by the owner on Apr 19, 2022. It is now read-only.

Update dependency snyk to v1.365.0#433

Open
renovate[bot] wants to merge 1 commit intoproductionfrom
renovate/snyk-1.x
Open

Update dependency snyk to v1.365.0#433
renovate[bot] wants to merge 1 commit intoproductionfrom
renovate/snyk-1.x

Conversation

@renovate
Copy link

@renovate renovate bot commented Feb 11, 2020

This PR contains the following updates:

Package Type Update Change
snyk dependencies minor 1.290.2 -> 1.365.0

Release Notes

snyk/snyk

v1.365.0

Compare Source

Features
  • pkg: Node v14 pkg build (2b59238)

v1.364.2

Compare Source

Bug Fixes
  • abridge call graph creation error messages in analytics (7a68ad3)

v1.364.1

Compare Source

Bug Fixes
  • improve reliability around call graph generation (44fc1e8)

v1.364.0

Compare Source

Features
  • increase tool flexibility for container static analysis (416289a)

v1.363.0

Compare Source

Features
  • add gomodules support depgraph, drop deptree (2168030)
Experimental signed bundle release

This release contains two extra pieces (docker-mac-signed-bundle.tar.gz and snyk-win-signed.exe), which are part of our code signing initiative.

v1.362.1

Compare Source

Bug Fixes
  • skip --all-projects suggestion when a yarn workspace (a147c0f)

v1.362.0

Compare Source

Features
  • if present display projectId in --json output (e181806)

v1.361.3

Compare Source

Bug Fixes
  • remove lodash main package from nodejs-lockfile-parser (a77d458)

v1.361.2

Compare Source

Bug Fixes
  • Adding a flag to activate applications scans for container images (7dd3e1d)

v1.361.1

Compare Source

Bug Fixes
  • missing dep in nodejs-lockfile-parser (1e02993)

v1.361.0

Compare Source

Features

v1.360.0

Compare Source

Features
  • scan container images without docker client (c719081)

v1.359.1

Compare Source

Bug Fixes
  • rename reachable paths field (c2f2443)

v1.359.0

Compare Source

This version breaks support for yarn projects on node8. Please use v1.358.0

Features
  • yarn v2 support and workspaces alt config (3a1ac38)

v1.358.0

Compare Source

Features
  • detect other files & suggest to use --all-projects (20b1811)

v1.357.0

Compare Source

Features
  • bump default depth to 4 for --all-projects (79dbca8)

v1.356.0

Compare Source

Features
  • increases max limit of a project paths to be processed (7ff8ca6)

v1.355.0

Compare Source

Features
  • send on original gradle project name (26dac3e)

v1.354.0

Compare Source

Features
  • improve IAC test output (2a9c71b)

v1.353.1

Compare Source

Bug Fixes
  • Allow IPv6 (if supported) (75d39d2)

v1.353.0

Compare Source

Features
  • add build.sbt to list of auto detactable manifests (a91a731)

v1.352.1

Compare Source

Bug Fixes

v1.352.0

Compare Source

Features
  • show reachable paths for supported projects (b91c3f1)

v1.351.0

Compare Source

Bug Fixes
  • count pkgs from graph if count is undefined (a88c6c6)
Features
  • introduce yarn workspaces scanning test & monitor (51c75d4)
  • throw if using workspaces with disallowed options (1168d09)
  • update help docs with --yarn-workspaces usage (0d9c7e4)

v1.350.1

Compare Source

Bug Fixes
  • gradle break cyclic dependencies (04ca645)

v1.350.0

Compare Source

Features
  • add Kubernetes configs detection logic (9fe44b2)
  • add new iac (Infra as Code) mode (17170c0)
  • support IaC configs test (K8s only) (5dc2c44)

v1.349.0

Compare Source

Features

v1.348.2

Compare Source

Bug Fixes
  • options passed to snyk wizard (b7b9088)

v1.348.1

Compare Source

Bug Fixes

Fix a bug where the location of the .snyk policy file during --all-projects was incorrectly calculated to the the root of where the command us run instead of the original location which is intended to be next to the manifest/project being tested.

  • calculate the policy folder from targetFile instead of relying on the path of where the command is run (e75db65)

v1.348.0

Compare Source

Features
  • update snyk test prune logic (cc1d4cf)

v1.347.1

Compare Source

Bug Fixes
  • show gradle --all-sub-projects suggestion on test (5bcd9de)

v1.347.0

Compare Source

Features
  • support potentially reachable on snyk test (e5efa7f)

v1.346.0

Compare Source

Bug Fixes
  • use relevant resolve dep tree types (9228e50)
Features
  • unify policy handling & plucking (197f1ec)

v1.345.1

Compare Source

Bug Fixes
  • allows scanning even if a single proj import fails (f451ee7)

v1.345.0

Compare Source

Features
  • config: show message when using a custom API endpoint (2d1abfb)

v1.344.0

Compare Source

Features
  • expose snyk-test debug context with -d (f22061d)

v1.343.0

Compare Source

Features
  • gradle support of depgraph (768aa07)

v1.342.3

Compare Source

Bug Fixes
  • bump snyk-docker-plugin to improve alpine scanning (dfb0844)

v1.342.2

Compare Source

Bug Fixes
  • handle undefined return from CLI command (1d71763)

v1.342.1

Compare Source

Bug Fixes
  • upgrade snky-docker-plugin (d20b90b)

v1.342.0

Compare Source

Bug Fixes
  • print-deps to only print under certain deps in graph threshold (45440ef)
Features
  • initial gradle graph support (4fc47a3)
  • support snyk test & monitor with depgraph from plugins (23dc1b3)

v1.341.2

Compare Source

Bug Fixes
  • make container commands use always static scan (11baf79)

v1.341.1

Compare Source

Bug Fixes
  • remove duplicated call to maybePrintDeps (9c23809)

v1.341.0

Compare Source

Features

v1.340.0

Compare Source

Features
  • increase max path, to allow large projs pass after prune (8e0e56c)

v1.339.4

Compare Source

Bug Fixes
  • correct error on missing target folder for reachable vulns (5034560)

v1.339.3

Compare Source

Bug Fixes
  • revert apk package name origin change (04ab6ca)

v1.339.2

Compare Source

Bug Fixes
  • Bump snyk docker plugin to handle errors (6de3cb1)

v1.339.1

Compare Source

Bug Fixes
  • prune depGraph paths accuracy (c654afb)

v1.339.0

Compare Source

Features
  • Update snyk-docker-plugin for extra error handling (903a794)

v1.338.0

Compare Source

Features
  • Update snyk-docker-plugin for oci images support (15503c9)

v1.337.0

Compare Source

Features
  • update mvn plugin to include new java call graph generator (8eb6f25)

v1.336.0

Compare Source

Features
  • add os and isDocker query strings (d12812e)

v1.335.0

Compare Source

Features
  • --reachable-vulns supports --all-projects flag in CLI (345ee05)

v1.334.0

Compare Source

Features
  • add lib for contributor count (1e94191)
  • do contrib count on monitor if analytics enabled (13a6d86)
  • extract allowAnalytics function in analytics (576a9ad)

v1.333.0

Compare Source

Features
  • support gradle v2 on new task and drop legacy one (74f65db)

v1.332.1

Compare Source

Bug Fixes
  • upgrade docker-plugin to resolve crashes when scanning binaries (2b1091a)

v1.332.0

Compare Source

Features
  • add --json-file-output option for snyk test (4de2ebb)

v1.331.0

Compare Source

Features
  • include standalone-ness in the analytics (7a5a2e0)

v1.330.4

Compare Source

Bug Fixes
  • command issue on check gradle version (708951b)

v1.330.3

Compare Source

Bug Fixes
  • go-plugin js heap oom using reverse for loop (a16a9be)

v1.330.2

Compare Source

Bug Fixes
  • support gradle legacy version (38cc805)

v1.330.1

Compare Source

Bug Fixes
  • gradle java OOM using graphs (4e5bcb6)

v1.330.0

Compare Source

Features
  • add IPv6 detection to fix auth bug (fae72ff)

v1.329.0

Compare Source

Features
  • allow a mode to display its custom help message (92bde5e)

v1.328.0

Compare Source

Features
  • add defualt utm params for cli auth flow (19d577b)

v1.327.1

Compare Source

Bug Fixes
  • bug in rpm non-existence error handling in snyk-docker-plugin (0ed1db7)

v1.327.0

Compare Source

Features

v1.326.0

Compare Source

Features
  • upgrade cocoapods plugin (bundle shrink) (9936810)

v1.325.0

Compare Source

Features

v1.324.0

Compare Source

Features
  • remove git-url-parse dependency (dd86bc9)

v1.323.2

Compare Source

Bug Fixes
  • add check if image name undefined (48cbf4a)

v1.323.1

Compare Source

Bug Fixes
  • do not ignore project name override for container projects (9d4df01)

v1.323.0

Compare Source

Features
  • include command "container" as alias for option "--docker" (6bc0085)

v1.322.0

Compare Source

Features
  • switch back to upstream configstore (a34b8d5)
  • switch back to upstream update-notifier (366c687)

v1.321.0

Compare Source

Features
  • upgrade nuget-plugin, removing core-js (c6c58ba)

v1.320.5

Compare Source

Bug Fixes
  • suggest --skip-unresolved for python test (d437796)

v1.320.4

Compare Source

Bug Fixes
  • wrong path to display better test results (274618e)

v1.320.3

Compare Source

Bug Fixes
  • enable mvn plugin logging when running with -d (5414755)

v1.320.2

Compare Source

Bug Fixes
  • updated test command so Circle will test properly (7784567)

v1.320.1

Compare Source

Bug Fixes
  • bump snyk-gradle-plugin from 3.2.5 to 3.2.7 ([be56248] which brings in an updated cli interface types library with new types for packageFormatVersion to PluginMetadata Interface(be56248))

v1.320.0

Compare Source

Features
  • container manifest file scanning in --experimental flag (183242c)

v1.319.2

Compare Source

Bug Fixes
  • Changed old fixtures to support new policy shape (0e65b5c)
  • upgrade snyk-policy from 1.13.5 to 1.14.1 (01afc36)

v1.319.1

Compare Source

Bug Fixes
  • update of snyk-mvn-plugin to 2.15.1 (d23d0c8) to fix an issue with multiple nested target dirs.

  • fix: upgrade @​snyk/npm-deps to version 1.18.3 in order to remove prettier from deps (was included by mistake at 1.18.2)

v1.319.0

Compare Source

Features
  • add monitor call graph metrics (8eb4a80)

v1.318.0

Compare Source

Features
  • support snyk monitor --reachable-vulns (f0abb35)

v1.317.0

Compare Source

Features
  • add callgraph metrics to run-tests (904e47b)

v1.316.2

Compare Source

Bug Fixes
  • docker error on monitoring multiple projects (eddeaa1)

v1.316.1

Compare Source

Bug Fixes

v1.316.0

Compare Source

Features
  • New vulnerability in lodash@4.17.15, there is no fix available so we are using a patched version @snyk/lodash
    (c359e05)

v1.315.1

Compare Source

Bug Fixes
  • make sure branch exists (71ed530)

v1.315.0

Compare Source

Features
  • adding target to container projects (4b969fd)
  • bump docker-plugin to use new format (fccaaae)

v1.314.0

Compare Source

Features
  • add reachable vulns to the snyk test summary line (3487ca5)
  • include better user messages for reachable vuln (b1d0311)

v1.313.1

Compare Source

Bug Fixes
  • cli-server, fake-server and their tests now support Restify v8 (8df372e)

v1.313.0

Compare Source

Features
  • enable experimental docker-archive scanning (5e627c6)

v1.312.0

Compare Source

Features
  • switch to use 'open' since 'opn' is deprecated (1474223)

v1.311.0

Compare Source

Features
  • add analytics for Snyk CLI plugins (98aee43)

v1.310.1

Compare Source

Bug Fixes
  • bump ruby-semver to use min Node 8 instead of 10 (a3ea038)

v1.310.0

Compare Source

Features
  • This new version prevents CLI crashing when processing big treeSize npm & yarn dependencies (2478ed5)

v1.309.0

Compare Source

Features
  • enable ruby graph monitor (aebf3b2)

v1.308.0

Compare Source

Bug Fixes
  • add missing global package to global packages (6f76bc1)
  • global packages permissions during release (3f41711)
  • install missing semantic-release package (ba042c7)
Features
  • migrate to CircleCI for unique project pipeline (4905b6e)

v1.307.0

Compare Source

v1.306.0

Compare Source

v1.305.1

Compare Source

v1.305.0

Compare Source

v1.304.0

Compare Source

v1.303.2

Compare Source

v1.303.1

Compare Source

v1.303.0

Compare Source

v1.302.0

Compare Source

v1.301.0

Compare Source

v1.300.0

Compare Source

v1.299.0

Compare Source

v1.298.1

Compare Source

v1.298.0

Compare Source

v1.297.4

Compare Source

v1.297.3

Compare Source

v1.297.2

Compare Source

v1.297.1

Compare Source

v1.297.0

Compare Source

v1.296.1

Compare Source

v1.296.0

Compare Source

v1.295.1

Compare Source

v1.295.0

Compare Source

v1.294.1

Compare Source

v1.294.0

Compare Source

v1.293.0

Compare Source

v1.292.0

Compare Source

v1.291.0

Compare Source


Renovate configuration

📅 Schedule: At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

♻️ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

🔕 Ignore: Close this PR and you won't be reminded about this update again.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by WhiteSource Renovate. View repository job log here.

@renovate renovate bot changed the title Update dependency snyk to v1.291.0 Update dependency snyk to v1.292.0 Feb 17, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from a3818d7 to d95c444 Compare February 17, 2020 15:16
@renovate renovate bot changed the title Update dependency snyk to v1.292.0 Update dependency snyk to v1.293.0 Feb 18, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from d95c444 to 301c718 Compare February 18, 2020 13:03
@renovate renovate bot changed the title Update dependency snyk to v1.293.0 Update dependency snyk to v1.294.0 Feb 18, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 301c718 to 560cc80 Compare February 18, 2020 13:55
@renovate renovate bot changed the title Update dependency snyk to v1.294.0 Update dependency snyk to v1.294.1 Feb 20, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 560cc80 to 4d116bb Compare February 20, 2020 20:15
@renovate renovate bot changed the title Update dependency snyk to v1.294.1 Update dependency snyk to v1.295.0 Feb 21, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 4d116bb to a8b64a5 Compare February 21, 2020 18:02
@renovate renovate bot changed the title Update dependency snyk to v1.295.0 Update dependency snyk to v1.295.1 Feb 23, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch 2 times, most recently from a962809 to 0fc6d31 Compare February 23, 2020 12:20
@renovate renovate bot changed the title Update dependency snyk to v1.295.1 Update dependency snyk to v1.296.0 Feb 23, 2020
@renovate renovate bot changed the title Update dependency snyk to v1.296.0 Update dependency snyk to v1.296.1 Feb 24, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 0fc6d31 to e493163 Compare February 24, 2020 11:19
@renovate renovate bot changed the title Update dependency snyk to v1.296.1 Update dependency snyk to v1.297.0 Feb 25, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from e493163 to d00fbb0 Compare February 25, 2020 11:45
@renovate renovate bot changed the title Update dependency snyk to v1.297.0 Update dependency snyk to v1.297.1 Feb 25, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from d00fbb0 to 5e78970 Compare February 25, 2020 14:38
@renovate renovate bot changed the title Update dependency snyk to v1.297.1 Update dependency snyk to v1.297.2 Feb 27, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 5e78970 to 4644faa Compare February 27, 2020 10:42
@renovate renovate bot changed the title Update dependency snyk to v1.297.2 Update dependency snyk to v1.297.3 Mar 1, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 4644faa to 7b0659a Compare March 1, 2020 12:26
@renovate renovate bot changed the title Update dependency snyk to v1.297.3 Update dependency snyk to v1.297.4 Mar 3, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 7b0659a to a692b68 Compare March 3, 2020 14:44
@renovate renovate bot changed the title Update dependency snyk to v1.297.4 Update dependency snyk to v1.298.0 Mar 4, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from a692b68 to 369b8a0 Compare March 4, 2020 10:59
@renovate renovate bot changed the title Update dependency snyk to v1.298.0 Update dependency snyk to v1.298.1 Mar 6, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 39fd284 to b6b9616 Compare March 23, 2020 16:00
@renovate renovate bot changed the title Update dependency snyk to v1.303.0 Update dependency snyk to v1.303.1 Mar 23, 2020
@renovate renovate bot changed the title Update dependency snyk to v1.303.1 Update dependency snyk to v1.303.2 Mar 24, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch 2 times, most recently from 15e8f13 to 67aec76 Compare March 24, 2020 17:30
@renovate renovate bot changed the title Update dependency snyk to v1.303.2 Update dependency snyk to v1.304.0 Mar 24, 2020
@renovate renovate bot changed the title Update dependency snyk to v1.304.0 Update dependency snyk to v1.305.0 Mar 25, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 67aec76 to adfde2a Compare March 25, 2020 08:42
@renovate renovate bot changed the title Update dependency snyk to v1.305.0 Update dependency snyk to v1.305.1 Apr 9, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from adfde2a to 1495e5e Compare April 9, 2020 08:13
@renovate renovate bot changed the title Update dependency snyk to v1.305.1 Update dependency snyk to v1.306.0 Apr 19, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 1495e5e to ceb7095 Compare April 19, 2020 13:44
@renovate renovate bot changed the title Update dependency snyk to v1.306.0 Update dependency snyk to v1.307.0 Apr 21, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from ceb7095 to 294f46a Compare April 21, 2020 10:13
@renovate renovate bot changed the title Update dependency snyk to v1.307.0 Update dependency snyk to v1.308.0 Apr 22, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 294f46a to f279222 Compare April 22, 2020 16:08
@renovate renovate bot changed the title Update dependency snyk to v1.308.0 Update dependency snyk to v1.309.0 Apr 22, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from f279222 to 3f4bb3b Compare April 22, 2020 16:21
@renovate renovate bot changed the title Update dependency snyk to v1.309.0 Update dependency snyk to v1.310.0 Apr 23, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 3f4bb3b to 4d525ec Compare April 23, 2020 20:13
@renovate renovate bot changed the title Update dependency snyk to v1.310.0 Update dependency snyk to v1.310.1 Apr 24, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 4d525ec to 53ddb49 Compare April 24, 2020 10:54
@renovate renovate bot changed the title Update dependency snyk to v1.310.1 Update dependency snyk to v1.311.0 Apr 24, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from 53ddb49 to c585f5b Compare April 24, 2020 14:10
@renovate renovate bot changed the title Update dependency snyk to v1.311.0 Update dependency snyk to v1.312.0 Apr 27, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from c585f5b to deb7158 Compare April 27, 2020 11:45
@renovate renovate bot changed the title Update dependency snyk to v1.312.0 Update dependency snyk to v1.313.0 Apr 27, 2020
@renovate renovate bot force-pushed the renovate/snyk-1.x branch from deb7158 to cd0cafa Compare April 27, 2020 14:34
@renovate renovate bot changed the title Update dependency snyk to v1.313.0 Update dependency snyk to v1.313.1 Apr 27, 2020
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant