From 12b84d80ff4c0fef0ea58a6c5e1de93c50ceb69f Mon Sep 17 00:00:00 2001 From: Michael Blaum <96261585+hashiblaum@users.noreply.github.com> Date: Thu, 20 Feb 2025 12:49:42 -0500 Subject: [PATCH] fix CL version and scan config (#164) --- CHANGELOG.md | 2 +- scan.hcl | 19 +++++++++++++++++++ 2 files changed, 20 insertions(+), 1 deletion(-) create mode 100644 scan.hcl diff --git a/CHANGELOG.md b/CHANGELOG.md index 9fd528f..3de991d 100644 --- a/CHANGELOG.md +++ b/CHANGELOG.md @@ -1,6 +1,6 @@ ## Unreleased -## 0.11.0 (Feb 20, 2025) +## 0.12.0 (Feb 20, 2025) LAYERS: ``` diff --git a/scan.hcl b/scan.hcl new file mode 100644 index 0000000..64d1ec5 --- /dev/null +++ b/scan.hcl @@ -0,0 +1,19 @@ +binary { + go_modules = true + go_stdlib = true + nvd = false + oss_index = true + osv = true + secrets = false + + triage { + suppress { + vulnerabilites = [ + "GHSA-f5pg-7wfw-84q9", # AWS S3 Crypto SDK vuln https://osv.dev/vulnerability/GO-2022-0646 + "GO-2022-0646", # alias + "GHSA-7f33-f4f5-xwgw", # AWS S3 Crypto SDK vuln https://osv.dev/vulnerability/GO-2022-0635 + "GO-2022-0635" #alias + ] + } + } +}