Skip to content

Commit

Permalink
chore: bump trivy-0.50.4 (#2041)
Browse files Browse the repository at this point in the history
Signed-off-by: chenk <[email protected]>
  • Loading branch information
chen-keinan authored Apr 24, 2024
1 parent 1cbf7bd commit dca19ab
Show file tree
Hide file tree
Showing 15 changed files with 16 additions and 16 deletions.
2 changes: 1 addition & 1 deletion deploy/helm/README.md
Original file line number Diff line number Diff line change
Expand Up @@ -138,7 +138,7 @@ Keeps security report resources updated
| trivy.image.pullPolicy | string | `"IfNotPresent"` | pullPolicy is the imge pull policy used for trivy image , valid values are (Always, Never, IfNotPresent) |
| trivy.image.registry | string | `"ghcr.io"` | registry of the Trivy image |
| trivy.image.repository | string | `"aquasecurity/trivy"` | repository of the Trivy image |
| trivy.image.tag | string | `"0.50.2"` | tag version of the Trivy image |
| trivy.image.tag | string | `"0.50.4"` | tag version of the Trivy image |
| trivy.imageScanCacheDir | string | `"/tmp/trivy/.cache"` | imageScanCacheDir the flag to set custom path for trivy image scan `cache-dir` parameter. Only applicable in image scan mode. |
| trivy.includeDevDeps | bool | `false` | includeDevDeps include development dependencies in the report (supported: npm, yarn) (default: false) note: this flag is only applicable when trivy.command is set to filesystem |
| trivy.insecureRegistries | object | `{}` | The registry to which insecure connections are allowed. There can be multiple registries with different keys. |
Expand Down
2 changes: 1 addition & 1 deletion deploy/helm/values.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -323,7 +323,7 @@ trivy:
# -- repository of the Trivy image
repository: aquasecurity/trivy
# -- tag version of the Trivy image
tag: 0.50.2
tag: 0.50.4
# -- imagePullSecret is the secret name to be used when pulling trivy image from private registries example : reg-secret
# It is the user responsibility to create the secret for the private registry in `trivy-operator` namespace
imagePullSecret: ~
Expand Down
2 changes: 1 addition & 1 deletion deploy/static/trivy-operator.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3024,7 +3024,7 @@ metadata:
app.kubernetes.io/managed-by: kubectl
data:
trivy.repository: "ghcr.io/aquasecurity/trivy"
trivy.tag: "0.50.2"
trivy.tag: "0.50.4"
trivy.imagePullPolicy: "IfNotPresent"
trivy.additionalVulnerabilityReportFields: ""
trivy.severity: "UNKNOWN,LOW,MEDIUM,HIGH,CRITICAL"
Expand Down
2 changes: 1 addition & 1 deletion docs/docs/crds/clustervulnerability-report.md
Original file line number Diff line number Diff line change
Expand Up @@ -44,7 +44,7 @@ report:
scanner:
name: Trivy
vendor: Aqua Security
version: 0.50.2
version: 0.50.4
summary:
criticalCount: 0
highCount: 4
Expand Down
2 changes: 1 addition & 1 deletion docs/docs/crds/sbom-report.md
Original file line number Diff line number Diff line change
Expand Up @@ -162,7 +162,7 @@ report:
scanner:
name: Trivy
vendor: Aqua Security
version: 0.50.2
version: 0.50.4
summary:
componentsCount: 5
dependenciesCount: 5
Expand Down
2 changes: 1 addition & 1 deletion go.mod
Original file line number Diff line number Diff line change
Expand Up @@ -4,7 +4,7 @@ go 1.22.0

require (
github.com/CycloneDX/cyclonedx-go v0.8.0
github.com/aquasecurity/trivy v0.50.2
github.com/aquasecurity/trivy v0.50.4
github.com/aquasecurity/trivy-kubernetes v0.6.6-0.20240403110607-a34923270723
github.com/bluele/gcache v0.0.2
github.com/caarlos0/env/v6 v6.10.1
Expand Down
4 changes: 2 additions & 2 deletions go.sum
Original file line number Diff line number Diff line change
Expand Up @@ -300,8 +300,8 @@ github.com/aquasecurity/testdocker v0.0.0-20230111101738-e741bda259da h1:pj/adfN
github.com/aquasecurity/testdocker v0.0.0-20230111101738-e741bda259da/go.mod h1:852lbQLpK2nCwlR4ZLYIccxYCfoQao6q9Nl6tjz54v8=
github.com/aquasecurity/tml v0.6.1 h1:y2ZlGSfrhnn7t4ZJ/0rotuH+v5Jgv6BDDO5jB6A9gwo=
github.com/aquasecurity/tml v0.6.1/go.mod h1:OnYMWY5lvI9ejU7yH9LCberWaaTBW7hBFsITiIMY2yY=
github.com/aquasecurity/trivy v0.50.2 h1:FAAH/YcF5yiprSFdMhZF3XHbhVSIpS8EF+NnllQIYBk=
github.com/aquasecurity/trivy v0.50.2/go.mod h1:XfQq9o0sQF25HHzgRFZT2fImCAOt+VCqE8m1d+jxt9U=
github.com/aquasecurity/trivy v0.50.4 h1:6+r30EnhodXLdzQimGwsU1iDZmrU+8xuTM6zjQ5ZUmM=
github.com/aquasecurity/trivy v0.50.4/go.mod h1:XfQq9o0sQF25HHzgRFZT2fImCAOt+VCqE8m1d+jxt9U=
github.com/aquasecurity/trivy-db v0.0.0-20231020043206-3770774790ce h1:53T1cV67meZOWb/AepAHRGrUH7ZwhulLIXravz0lFp4=
github.com/aquasecurity/trivy-db v0.0.0-20231020043206-3770774790ce/go.mod h1:cj9/QmD9N3OZnKQMp+/DvdV+ym3HyIkd4e+F0ZM3ZGs=
github.com/aquasecurity/trivy-java-db v0.0.0-20240109071736-184bd7481d48 h1:JVgBIuIYbwG+ekC5lUHUpGJboPYiCcxiz06RCtz8neI=
Expand Down
2 changes: 1 addition & 1 deletion pkg/plugins/trivy/config_test.go
Original file line number Diff line number Diff line change
Expand Up @@ -725,7 +725,7 @@ func TestPlugin_Init(t *testing.T) {
},
Data: map[string]string{
"trivy.repository": DefaultImageRepository,
"trivy.tag": "0.50.2",
"trivy.tag": "0.50.4",
"trivy.severity": DefaultSeverity,
"trivy.slow": "true",
"trivy.mode": string(Standalone),
Expand Down
2 changes: 1 addition & 1 deletion pkg/plugins/trivy/jobspec_test.go

Large diffs are not rendered by default.

2 changes: 1 addition & 1 deletion pkg/plugins/trivy/plugin.go
Original file line number Diff line number Diff line change
Expand Up @@ -80,7 +80,7 @@ func (p *plugin) Init(ctx trivyoperator.PluginContext) error {
return ctx.EnsureConfig(trivyoperator.PluginConfig{
Data: map[string]string{
keyTrivyImageRepository: DefaultImageRepository,
keyTrivyImageTag: "0.50.2",
keyTrivyImageTag: "0.50.4",
KeyTrivySeverity: DefaultSeverity,
keyTrivySlow: "true",
keyTrivyMode: string(Standalone),
Expand Down
2 changes: 1 addition & 1 deletion pkg/plugins/trivy/testdata/fixture/alpine_sbom.json
Original file line number Diff line number Diff line change
Expand Up @@ -12,7 +12,7 @@
"type": "application",
"group": "aquasecurity",
"name": "trivy",
"version": "0.50.2"
"version": "0.50.4"
}
]
},
Expand Down
2 changes: 1 addition & 1 deletion pkg/vulnerabilityreport/controller/testdata/sbom.json
Original file line number Diff line number Diff line change
Expand Up @@ -246,7 +246,7 @@
"scanner": {
"name": "Trivy",
"vendor": "Aqua Security",
"version": "0.50.2"
"version": "0.50.4"
},
"summary": {
"componentsCount": 5,
Expand Down
2 changes: 1 addition & 1 deletion tests/e2e/sbom-client-server/workload/00-sbom-pod.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3526,7 +3526,7 @@ report:
scanner:
name: Trivy
vendor: Aqua Security
version: 0.50.2
version: 0.50.4
summary:
componentsCount: 110
dependenciesCount: 110
Expand Down
2 changes: 1 addition & 1 deletion tests/e2e/sbom-fs/workload/00-sbom-pod.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3526,7 +3526,7 @@ report:
scanner:
name: Trivy
vendor: Aqua Security
version: 0.50.2
version: 0.50.4
summary:
componentsCount: 110
dependenciesCount: 110
Expand Down
2 changes: 1 addition & 1 deletion tests/e2e/sbom-standalone/workload/00-sbom-pod.yaml
Original file line number Diff line number Diff line change
Expand Up @@ -3526,7 +3526,7 @@ report:
scanner:
name: Trivy
vendor: Aqua Security
version: 0.50.2
version: 0.50.4
summary:
componentsCount: 110
dependenciesCount: 110
Expand Down

0 comments on commit dca19ab

Please sign in to comment.