Update securego/gosec action to v2.19.0 #84
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
This PR contains the following updates:
v2.17.0
->v2.19.0
Release Notes
securego/gosec (securego/gosec)
v2.19.0
Compare Source
Changelog
26e57d6
Update CI to go version 1.22e60b8d8
chore(deps): update all dependencies1285eb7
chore(deps): update all dependenciescf4ab3e
chore(deps): update all dependencies277553c
chore(deps): update all dependencies57ec76b
chore(deps): update all dependencies8fa46c1
chore(deps): update dependency babel-standalone to v7.23.753aa3f7
chore(deps): update module golang.org/x/crypto to v0.17.0 [security]187adab
chore(deps): update all dependenciese1f27ba
chore(deps): update actions/setup-go action to v52aad3f0
Fix lint warnings by properly formatting the files0e2a618
chore: Refactor Sample Code to Separate Filesbc03d1c
Update go version to 1.21.5 and 1.20.12 (#1084)79a6b47
chore(deps): update all dependencies (#1080)eb256a7
Ignore the issues from generated files when using the analysis framework (#1079)43b7cbf
Update README with upload-sarif v2 (#1078)fece498
chore(deps): update dependency babel-standalone to v7.23.424c614b
Added ppc64le supportc736581
chore(deps): update all dependencies3188e3f
Ensure ignores are handled properly for multi-line issues6d56592
Update Go to version 1.21.4 and 1.20.11870103b
chore(deps): update module golang.org/x/text to v0.14.0b50e493
chore(deps): update all dependencies2f9965b
Remove the hardcoded GOOS value when building the Linux binary to enable support for container image for ARMfa1b74d
Avoid allocations with(*regexp.Regexp).MatchString
64bbe90
Fix some typosd9071e3
Update local installation instructions by removing the details for Go 1.165d837bc
Update gosec version to 2.18.2 in the actionv2.18.2
Compare Source
Changelog
55d7949
Disable dot-imports in revive linter4656817
chore(deps): update module github.com/onsi/gomega to v1.28.15567ac4
Run the gosec with data race detector active during testsa239758
Fix data race in the analyzerc06903a
Fix test that checks the overriden nosec directivebde2619
Clean global state in flgs testse108c56
Format the filee298388
Update README with details which describe the current behaviour of #nosecd8a6d35
Ensure the ignores are parsed before analysing the package7846db0
chore(deps): update all dependencies8e0cf8c
Update gosec to version 2.18.1 in the action6b12a71
Update cosign version to v2.2.0v2.18.1
Compare Source
Changelog
0ec6cd9
Refactor how ignored issues are trackedf338a98
Restrict the maximum depth when tracking the slice bounds7e2d8d3
Handle empty ssa results074353a
Handle gracefully any panic that occurs when building the SSA representation of a packageec31a3a
Fix typoa11eb28
Handle new function when getting the call info in case is overriden5b7867d
Bump golang.org/x/net from 0.16.0 to 0.17.0 (#1037)dd08f99
Update to Go 1.21.3 and 1.20.10 (#1035)616520f
Update the list of unsafe functions detected by the unsafe rule (#1033)3952187
Update the action to use gosec version v2.18.0 (#1029)2b62dd1
Use a step ID in github release action to get the digest of the image (#1028)v2.18.0
Compare Source
Changelog
53fc0c3
Update to go version 1.21.2 and 1.20.9 (#1027)7f7c47f
chore(deps): update all dependencies (#1026)d864a91
Enable gochecknoinits; fix lint issues; use consts for some vars (#1022)09cf6ef
Fix typos in struct fields, comments, and docs (#1023)665e87b
chore(deps): update all dependencies4def3a4
Fix lint warning0d332a1
Add a new rule which detects when a file is created with os.Create but the configured permissions are less than 0666293d887
Fix lint warningsac482cb
Update ginkgo to latest versione02e2f6
Redesign and reimplement the slice out of bounds check using SSA code representatione1278f9
docs: add reMarkable to users listf6a6496
chore(deps): update all dependenciesaebe20c
Drop support for go 1.19.x since go team doesn't ship anymore security fixes for it7a98537
Update to latest go versionb192f06
chore(deps): update all dependencies (#1011)6c93653
Fix hardcoded_credentials rule to only match on more specific patterns (#1009)325eb19
chore(deps): update all dependencies (#1008)beef125
Exclude maps from slince bounce check rule (#1006)21d13c9
Ignore struct pointers in G601 (#1003)85005c4
Update gosec image version to 2.17.0 in the Github action (#1002)6a2c5e1
Update cosign to version v2.1.1 (#1000)Configuration
📅 Schedule: Branch creation - At any time (no schedule defined), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.