Aquasecurity Trivy Operator Versions Save

Kubernetes-native security toolkit

v0.20.1

3 weeks ago

Changelog

โœจ Notable Changes โœจ

  • ba16b5731319572c4816e6e9e9018f5546d23711: feat: add helm value for adding annotations to the trivy operator deployment (#1989) (@martijnvdp)
  • eaf2b209d127a5f9da98e696ae856ced7d84e099: feat: scan-job custom volumes (#2020) (@chen-keinan)
  • 0f9e0f830240d6dd2591c5099f5402d7de59c765: feat: separate toleration setting for node-collector (#2006) (@chen-keinan)

๐Ÿ› Notable Fixes ๐Ÿ›

  • 8b906fdf4d4c4ac425db6065e6d577af4e00c284: fix(helm): trivy server value typo (#2001) (@ABWassim)
  • b56e4994c77afbb1a8d4b58abea4448732608f07: fix: add policies download err msg and fallback to embeded (#2000) (@chen-keinan)
  • d810d14110672194c78d93fbd159d9b68591b200: fix: better error handling for node config api data (#2004) (@chen-keinan)
  • 759019dbd01cdec9fcbd53b5fbc9a948783a8619: fix: better handling for kubelet config (#2017) (@chen-keinan)
  • 9e8663c4bc64f1d3b20a78322b9594d84342e1af: fix: log entry name on policy loader (#2013) (@chen-keinan)
  • 201d00addc55a9ed0b050d19f716207f0ab34f34: fix: typo fail download policy label (#2035) (@bunseokbot)

๐Ÿ‘ฎ Security updates๐Ÿ‘ฎ

  • a5098953bd489e098f436df858663a30d26cb441: sec: update go-getter to latest version (#2023) (@Starttoaster)

๐Ÿ“ Documentation ๐Ÿ“

  • f8bf36603f184a405961cef8a4dd3bc3fa6a1a32: docs: add information on running Helm Chart in client server mode (#2005) (@AnaisUrlichs)
  • ec64431939d84e8022dd10187310f39aaa4b2a99: docs: version callout (#2012) (@AnaisUrlichs)

๐Ÿ”ง Miscellaneous ๐Ÿ”ง

  • 9b8c3e5a0791e511dc6f6119eb00ef0e9baa0883: chore: bump trivy-0.50.2 (#2037) (@chen-keinan)
  • 77c9675e6666f20df588827597e45f9ae8de8aa7: chore: update built-in checks package repository name (#2014) (@chen-keinan)

๐Ÿ‘ท Other work ๐Ÿ‘ท

  • 1bf2c8f0fc89808a1c2998ff7ee1fd1a50326f8d: Updates ignorePolicy comments in values.yaml (#1988) (@KateFiroozi)
  • 4a06fc27da5c056e1aeddbfbfe232a354058441a: build(deps): bump azure/setup-helm from 4.1.0 to 4.2.0 (#2029) (@dependabot[bot])
  • a324c2d78be89b9e83dacadf68a61782289c35ed: build(deps): bump github.com/aws/aws-sdk-go from 1.51.11 to 1.51.16 (#1990) (@dependabot[bot])
  • 3c03632d399d5028c5920494d8a1fe5838c00af2: build(deps): bump github.com/aws/aws-sdk-go from 1.51.16 to 1.51.21 (#2009) (@dependabot[bot])
  • 6146286494ea5ba510c44da6159f37dd26e21f57: build(deps): bump github.com/aws/aws-sdk-go from 1.51.21 to 1.51.25 (#2033) (@dependabot[bot])
  • 098e084aa6211b361c867df837fb5f8bba5e288f: build(deps): bump golang.org/x/net from 0.22.0 to 0.24.0 (#1991) (@dependabot[bot])
  • 83e64f2833a96fe01e7b2c7794e21c23f89206e5: build(deps): bump sigs.k8s.io/controller-runtime from 0.17.2 to 0.17.3 (#2010) (@dependabot[bot])
  • ef8f01b79980aa1b79e42705d31c6d655f109eab: build(deps): bump sigstore/cosign-installer from 3.4.0 to 3.5.0 (#2011) (@dependabot[bot])

v0.20.0

4 weeks ago

Changelog

โœจ Notable Changes โœจ

  • ba16b5731319572c4816e6e9e9018f5546d23711: feat: add helm value for adding annotations to the trivy operator deployment (#1989) (@martijnvdp)
  • eaf2b209d127a5f9da98e696ae856ced7d84e099: feat: scan-job custom volumes (#2020) (@chen-keinan)
  • 0f9e0f830240d6dd2591c5099f5402d7de59c765: feat: separate toleration setting for node-collector (#2006) (@chen-keinan)

๐Ÿ› Notable Fixes ๐Ÿ›

  • 8b906fdf4d4c4ac425db6065e6d577af4e00c284: fix(helm): trivy server value typo (#2001) (@ABWassim)
  • b56e4994c77afbb1a8d4b58abea4448732608f07: fix: add policies download err msg and fallback to embeded (#2000) (@chen-keinan)
  • d810d14110672194c78d93fbd159d9b68591b200: fix: better error handling for node config api data (#2004) (@chen-keinan)
  • 759019dbd01cdec9fcbd53b5fbc9a948783a8619: fix: better handling for kubelet config (#2017) (@chen-keinan)
  • 9e8663c4bc64f1d3b20a78322b9594d84342e1af: fix: log entry name on policy loader (#2013) (@chen-keinan)

๐Ÿ‘ฎ Security updates๐Ÿ‘ฎ

  • a5098953bd489e098f436df858663a30d26cb441: sec: update go-getter to latest version (#2023) (@Starttoaster)

๐Ÿ“ Documentation ๐Ÿ“

  • f8bf36603f184a405961cef8a4dd3bc3fa6a1a32: docs: add information on running Helm Chart in client server mode (#2005) (@AnaisUrlichs)
  • ec64431939d84e8022dd10187310f39aaa4b2a99: docs: version callout (#2012) (@AnaisUrlichs)

๐Ÿ”ง Miscellaneous ๐Ÿ”ง

  • 77c9675e6666f20df588827597e45f9ae8de8aa7: chore: update built-in checks package repository name (#2014) (@chen-keinan)

๐Ÿ‘ท Other work ๐Ÿ‘ท

  • 1bf2c8f0fc89808a1c2998ff7ee1fd1a50326f8d: Updates ignorePolicy comments in values.yaml (#1988) (@KateFiroozi)
  • a324c2d78be89b9e83dacadf68a61782289c35ed: build(deps): bump github.com/aws/aws-sdk-go from 1.51.11 to 1.51.16 (#1990) (@dependabot[bot])
  • 3c03632d399d5028c5920494d8a1fe5838c00af2: build(deps): bump github.com/aws/aws-sdk-go from 1.51.16 to 1.51.21 (#2009) (@dependabot[bot])
  • 098e084aa6211b361c867df837fb5f8bba5e288f: build(deps): bump golang.org/x/net from 0.22.0 to 0.24.0 (#1991) (@dependabot[bot])
  • 83e64f2833a96fe01e7b2c7794e21c23f89206e5: build(deps): bump sigs.k8s.io/controller-runtime from 0.17.2 to 0.17.3 (#2010) (@dependabot[bot])
  • ef8f01b79980aa1b79e42705d31c6d655f109eab: build(deps): bump sigstore/cosign-installer from 3.4.0 to 3.5.0 (#2011) (@dependabot[bot])

v0.19.4

1 month ago

Changelog

๐Ÿ› Notable Fixes ๐Ÿ›

  • a14724dd79433222348213723810cd6bbe48214a: fix: remove controller manager timeout (#1980) (@chen-keinan)

v0.19.3

1 month ago

Changelog

๐Ÿ› Notable Fixes ๐Ÿ›

  • 228e0fe490c6cd7d1a75a42e43fc6d67f8758b7e: fix: add annotation job pod template spec (#1975) (@chen-keinan)
  • 2af353a4f0d8d7b93ef9cce1d2e642e4399fd9da: fix: add appropriate info msg for not supported windows images (#1966) (@chen-keinan)
  • 8ca4b5fce6792cae70ecf599bb6260492f2a50d1: fix: configure context timeout for sync resources (#1974) (@chen-keinan)
  • f38ca4e76b36102cf2a55fb6fc63647027541069: fix: handle non sha256 digest (#1967) (@chen-keinan)
  • fa6f5969344a3269d8b3f279d2088fa7f46b5d87: fix: lazy loading of config-audit policies (#1958) (@chen-keinan)

๐Ÿ”ง Miscellaneous ๐Ÿ”ง

  • 4cf0c1c4e19a9efaba607f1f712506bfc08967fd: chore: clean-up un-used folders and files (#1964) (@chen-keinan)

๐Ÿ‘ท Other work ๐Ÿ‘ท

  • b5b694b98b69acafac9b242506ba58829db2cb0c: build(deps): bump actions/setup-python from 5.0.0 to 5.1.0 (#1968) (@dependabot[bot])
  • b798f2c5ea4b781d4b01e79fffcbca7a79c9f50b: build(deps): bump github.com/aws/aws-sdk-go from 1.51.8 to 1.51.11 (#1969) (@dependabot[bot])
  • 9b856d5191248ba272d26f98cd78d59a64bbd1a3: refactor: integration tests (#1962) (@chen-keinan)
  • 35b6806d7f4b8331749142b49b9c2a6916979aae: refactor: tests e2e config (#1963) (@chen-keinan)

v0.19.2

1 month ago

Changelog

โœจ Notable Changes โœจ

  • 380f5d3d2d3dfeb743714afb82f454b3d3cbf908: feat: Add existing secret to policies bundle (#1952) (@KevinDW-Fluxys)
  • 2432d4a0cc368a2e11f1abf53a02b85c62af0024: feat: Helm, allow to define service type for metrics Service (#1929) (@ilpianista)

๐Ÿ”ง Miscellaneous ๐Ÿ”ง

  • 5dcf4ef8b943e4bb744abadbae95ec22706df58c: chore: bump trivy lib and scan-job v0.50.0 (#1949) (@chen-keinan)

๐Ÿ‘ท Other work ๐Ÿ‘ท

  • 67faec0815be611ac94669e72450b705f6ffccc9: build(deps): bump aquaproj/aqua-installer from 2.3.0 to 3.0.0 (#1944) (@dependabot[bot])
  • b5f6e9062c3f4ba38c7f358cbb9a31556d728749: build(deps): bump github.com/aws/aws-sdk-go from 1.50.35 to 1.51.8 (#1950) (@dependabot[bot])
  • 1386a946bc4b77a9f7e790d75f8d89ee582b9a8f: build(deps): bump github.com/onsi/ginkgo/v2 from 2.16.0 to 2.17.1 (#1940) (@dependabot[bot])
  • 7e0814e5ca987144a62a0f6d1204a87ba0a3cea5: build(deps): bump github.com/onsi/gomega from 1.31.1 to 1.32.0 (#1943) (@dependabot[bot])
  • f4208c5818e3e6e48b0582f65f0fe936328dd0f5: build(deps): bump k8s.io/apiextensions-apiserver from 0.29.2 to 0.29.3 (#1941) (@dependabot[bot])
  • 1dc8c4c35687e0113fd58a4fa4e3edb084bf22a5: initialize logging earlier in the main function (#1935) (@Hacks4Snacks)

v0.19.1

2 months ago

Changelog

๐Ÿ› Notable Fixes ๐Ÿ›

  • 2aa20ed44df19dbbe57da538e2d401e1137616e6: fix: generate scan reports for individual completed containers when pod scan failed (#1917) (@chen-keinan)
  • 5aaa7dee708250941b269da84323369718357d23: fix: load trivy-policies by config (#1928) (@chen-keinan)
  • 72722f47ad39cf89e633656554f5fd0097711224: fix: node-collector respect pod requests/limits (#1927) (@chen-keinan)
  • d62c500348e12752066f70b4ac1302a996d9bca3: fix: support affinity for scan jobs (#1915) (@maxbrunet)

๐Ÿ“ Documentation ๐Ÿ“

  • 513430745cf0b7ea46ec490a0c28dc7edb37fd5c: docs: Improve documentation for ClusterVulnerabilityReports (#1910) (@sudoleg)

๐Ÿ”ง Miscellaneous ๐Ÿ”ง

  • 0582f703da75cbf72d2c06a24b4ddd9e672f4747: chore: update ignore file values example (#1919) (@chen-keinan)

๐Ÿ‘ท Other work ๐Ÿ‘ท

  • 2b8bd60d9afa77f455f4f753835e053a103ab0b9: build(deps): bump docker/login-action from 3.0.0 to 3.1.0 (#1926) (@dependabot[bot])
  • b7248f2077b4ca7d2633cc48092f154103c4b8f1: build(deps): bump github.com/google/go-containerregistry (#1924) (@dependabot[bot])
  • 0871dcd2525b865b40873133d16135654e1b15c7: build(deps): bump k8s.io/cli-runtime from 0.29.2 to 0.29.3 (#1922) (@dependabot[bot])
  • 2ed26a2ff2756458c699e2cfaee3b7130e4946b1: feat: refactor integration tests folders structure (#1914) (@chen-keinan)

v0.19.0

2 months ago

Changelog

๐Ÿ’”Breaking Change๐Ÿ’”

sbom crd format has been changed following to latest cycloneDX format. execute the following before upgrade:

    kubectl delete crd sbomreports.aquasecurity.github.io
    kubectl delete crd clustersbomreports.aquasecurity.github.io

Changelog

โœจ Notable Changes โœจ

  • f6b4e47fcc07ced1da0b6790705b89109ace608a: feat: Also publish chart to OCI registry (#1889) (@mkilchhofer)
  • cce0c22584d102218e7569a5c46cfc7a8c7be574: feat: Enable passing values for operator through custom ConfigMap and/or Secrets (#1849) (@flash-me)
  • b05764c588e8cda61f3425979c6c47b9241ab954: feat: add extra labels for operator and server controllers in Helm chart (#1867) (@fhielpos)
  • 488e4e3d93e0a95c809bad3881ec06bce70fd9b5: feat: added configurable appProtocol to metrics service (#1871) (@seekermarcel)
  • 3fb8e61dfbc746e8998300e36d9caee0eb6e423c: feat: opa exception support (#1845) (@chen-keinan)
  • 32094480c6ef7828e63b4e2458a6e39bba644ff1: feat: scan job secret ttl support (#1875) (@chen-keinan)
  • 50b60fd85c7c0b88dff7bee6b521a9c8507ca179: feat: ssl-cert dir support on init containers and built-in server (#1903) (@chen-keinan)
  • b25e5328b9cf1788e2f9c9bf3c55f2dbd534e465: feat: trivy policies bundle support (#1897) (@chen-keinan)

๐Ÿ› Notable Fixes ๐Ÿ›

  • 048d77ea005d6712d127b61188154decbaa96d17: fix: access to private regional gcr (#1869) (@dnskr)
  • 8cda1612157cef6212977f763aa33a56353a34e6: fix: false positive cis kubeletMakeIptablesUtilChainsArgumentSet (#1858) (@chen-keinan)

๐Ÿ‘ฎ Security updates๐Ÿ‘ฎ

  • 83703a17143edb0bda6d1811c2e11fa676435fb8: sec: fix CVE-2024-26147 (#1877) (@chen-keinan)

๐Ÿ“ Documentation ๐Ÿ“

  • ba33abd47be9f9dedf3ec0067d0e19384c7428da: docs: Fix some links to other sections and websites (#1846) (@maltemorgenstern)
  • 338ed27a372e9ea357d54cac5f5c904231723528: docs: add documentation on how to install trivy-operator in a ns with default deny-all netpols (#1608) (@francRang)
  • 867f42b921a288f43f643af0b60daf0a48a0788d: docs: remove unused badges (#1891) (@chen-keinan)

๐Ÿ”ง Miscellaneous ๐Ÿ”ง

  • 43f8555b67b353afd2336e315d6e2d086efbc4a2: chore: bump trivy-0.49.1 lib (#1859) (@chen-keinan)

๐Ÿ‘ท Other work ๐Ÿ‘ท

  • 9800cd29d4941c9ef90ae7cdcee5ecd9bf5676bb: build(deps): bump github.com/aws/aws-sdk-go from 1.50.10 to 1.50.21 (#1865) (@dependabot[bot])
  • d89928452f5913cd1ffa6b136f1a4d2b5f24ae27: build(deps): bump github.com/aws/aws-sdk-go from 1.50.21 to 1.50.25 (#1884) (@dependabot[bot])
  • 31413c477474031db8c3b21d274bc0da697748a5: build(deps): bump github.com/aws/aws-sdk-go from 1.50.25 to 1.50.30 (#1894) (@dependabot[bot])
  • 5600921c3fb958adb0b714aa89cdfa72510da1c2: build(deps): bump github.com/aws/aws-sdk-go from 1.50.30 to 1.50.35 (#1904) (@dependabot[bot])
  • 6f4c35157a51134104794e40c9d4c2cfc6a1568b: build(deps): bump github.com/onsi/ginkgo/v2 from 2.15.0 to 2.16.0 (#1905) (@dependabot[bot])
  • 6d085723a02337dfb9d4fe3e1565aea5d665410b: build(deps): bump github.com/prometheus/client_golang (#1893) (@dependabot[bot])
  • 5070b31bfb2164fb6e8715e55dc11290a7b58007: build(deps): bump github.com/stretchr/testify from 1.8.4 to 1.9.0 (#1892) (@dependabot[bot])
  • be216843c6d42b70a5cc472f3ea918bb90b15684: build(deps): bump golang.org/x/net from 0.20.0 to 0.21.0 (#1854) (@dependabot[bot])
  • bf14a9d22adfd6cf6359dc724203c9e945d38660: build(deps): bump golang.org/x/net from 0.21.0 to 0.22.0 (#1906) (@dependabot[bot])
  • e502b1f9cf99040ddb39d45111b7379bc2220950: build(deps): bump golangci/golangci-lint-action from 3.7.0 to 4.0.0 (#1852) (@dependabot[bot])
  • ed2cac12b6bcdb97b3cd62005c74c816a7e3994c: build(deps): bump helm/kind-action from 1.8.0 to 1.9.0 (#1851) (@dependabot[bot])
  • 260612f886912671ba8c031dfa1ea7076fcc50c4: build(deps): bump jdcargile/ms-teams-notification from 1.3 to 1.4 (#1882) (@dependabot[bot])
  • 508fb9480185a53fbd11c7b159289c9253c69e68: build(deps): bump k8s.io/apiextensions-apiserver from 0.29.1 to 0.29.2 (#1883) (@dependabot[bot])
  • a5867ce2ec7e409c7479e5fbc2f88a50da9e3e67: build(deps): bump k8s.io/apimachinery from 0.29.1 to 0.29.2 (#1864) (@dependabot[bot])
  • 3e5d0060eca3edc4806194c678ac0cbb56b9357a: build(deps): bump k8s.io/cli-runtime from 0.29.1 to 0.29.2 (#1860) (@dependabot[bot])
  • f957580d5575ca7f477c32d931bc90c3ef9453f0: build(deps): bump sigs.k8s.io/controller-runtime from 0.17.0 to 0.17.2 (#1861) (@dependabot[bot])

v0.19.0-rc

2 months ago

Changelog

โœจ Notable Changes โœจ

  • f6b4e47fcc07ced1da0b6790705b89109ace608a: feat: Also publish chart to OCI registry (#1889) (@mkilchhofer)
  • cce0c22584d102218e7569a5c46cfc7a8c7be574: feat: Enable passing values for operator through custom ConfigMap and/or Secrets (#1849) (@flash-me)
  • b05764c588e8cda61f3425979c6c47b9241ab954: feat: add extra labels for operator and server controllers in Helm chart (#1867) (@fhielpos)
  • 488e4e3d93e0a95c809bad3881ec06bce70fd9b5: feat: added configurable appProtocol to metrics service (#1871) (@seekermarcel)
  • 3fb8e61dfbc746e8998300e36d9caee0eb6e423c: feat: opa exception support (#1845) (@chen-keinan)
  • 32094480c6ef7828e63b4e2458a6e39bba644ff1: feat: scan job secret ttl support (#1875) (@chen-keinan)
  • 50b60fd85c7c0b88dff7bee6b521a9c8507ca179: feat: ssl-cert dir support on init containers and built-in server (#1903) (@chen-keinan)
  • b25e5328b9cf1788e2f9c9bf3c55f2dbd534e465: feat: trivy policies bundle support (#1897) (@chen-keinan)

๐Ÿ› Notable Fixes ๐Ÿ›

  • 048d77ea005d6712d127b61188154decbaa96d17: fix: access to private regional gcr (#1869) (@dnskr)
  • 8cda1612157cef6212977f763aa33a56353a34e6: fix: false positive cis kubeletMakeIptablesUtilChainsArgumentSet (#1858) (@chen-keinan)

๐Ÿ‘ฎ Security updates๐Ÿ‘ฎ

  • 83703a17143edb0bda6d1811c2e11fa676435fb8: sec: fix CVE-2024-26147 (#1877) (@chen-keinan)

๐Ÿ“ Documentation ๐Ÿ“

  • ba33abd47be9f9dedf3ec0067d0e19384c7428da: docs: Fix some links to other sections and websites (#1846) (@maltemorgenstern)
  • 338ed27a372e9ea357d54cac5f5c904231723528: docs: add documentation on how to install trivy-operator in a ns with default deny-all netpols (#1608) (@francRang)
  • 867f42b921a288f43f643af0b60daf0a48a0788d: docs: remove unused badges (#1891) (@chen-keinan)

๐Ÿ”ง Miscellaneous ๐Ÿ”ง

  • 43f8555b67b353afd2336e315d6e2d086efbc4a2: chore: bump trivy-0.49.1 lib (#1859) (@chen-keinan)

๐Ÿ‘ท Other work ๐Ÿ‘ท

  • 9800cd29d4941c9ef90ae7cdcee5ecd9bf5676bb: build(deps): bump github.com/aws/aws-sdk-go from 1.50.10 to 1.50.21 (#1865) (@dependabot[bot])
  • d89928452f5913cd1ffa6b136f1a4d2b5f24ae27: build(deps): bump github.com/aws/aws-sdk-go from 1.50.21 to 1.50.25 (#1884) (@dependabot[bot])
  • 31413c477474031db8c3b21d274bc0da697748a5: build(deps): bump github.com/aws/aws-sdk-go from 1.50.25 to 1.50.30 (#1894) (@dependabot[bot])
  • 5600921c3fb958adb0b714aa89cdfa72510da1c2: build(deps): bump github.com/aws/aws-sdk-go from 1.50.30 to 1.50.35 (#1904) (@dependabot[bot])
  • 6f4c35157a51134104794e40c9d4c2cfc6a1568b: build(deps): bump github.com/onsi/ginkgo/v2 from 2.15.0 to 2.16.0 (#1905) (@dependabot[bot])
  • 6d085723a02337dfb9d4fe3e1565aea5d665410b: build(deps): bump github.com/prometheus/client_golang (#1893) (@dependabot[bot])
  • 5070b31bfb2164fb6e8715e55dc11290a7b58007: build(deps): bump github.com/stretchr/testify from 1.8.4 to 1.9.0 (#1892) (@dependabot[bot])
  • be216843c6d42b70a5cc472f3ea918bb90b15684: build(deps): bump golang.org/x/net from 0.20.0 to 0.21.0 (#1854) (@dependabot[bot])
  • bf14a9d22adfd6cf6359dc724203c9e945d38660: build(deps): bump golang.org/x/net from 0.21.0 to 0.22.0 (#1906) (@dependabot[bot])
  • e502b1f9cf99040ddb39d45111b7379bc2220950: build(deps): bump golangci/golangci-lint-action from 3.7.0 to 4.0.0 (#1852) (@dependabot[bot])
  • ed2cac12b6bcdb97b3cd62005c74c816a7e3994c: build(deps): bump helm/kind-action from 1.8.0 to 1.9.0 (#1851) (@dependabot[bot])
  • 260612f886912671ba8c031dfa1ea7076fcc50c4: build(deps): bump jdcargile/ms-teams-notification from 1.3 to 1.4 (#1882) (@dependabot[bot])
  • 508fb9480185a53fbd11c7b159289c9253c69e68: build(deps): bump k8s.io/apiextensions-apiserver from 0.29.1 to 0.29.2 (#1883) (@dependabot[bot])
  • a5867ce2ec7e409c7479e5fbc2f88a50da9e3e67: build(deps): bump k8s.io/apimachinery from 0.29.1 to 0.29.2 (#1864) (@dependabot[bot])
  • 3e5d0060eca3edc4806194c678ac0cbb56b9357a: build(deps): bump k8s.io/cli-runtime from 0.29.1 to 0.29.2 (#1860) (@dependabot[bot])
  • f957580d5575ca7f477c32d931bc90c3ef9453f0: build(deps): bump sigs.k8s.io/controller-runtime from 0.17.0 to 0.17.2 (#1861) (@dependabot[bot])

v0.18.5

3 months ago

Changelog

โœจ Notable Changes โœจ

  • e13fb50760d01855af61d2825411d9a824be0d20: feat(crds): add preserve unknown fields to all crds (#1839) (@rndmh3ro)

๐Ÿ› Notable Fixes ๐Ÿ›

  • 896dc38ea9e1f6aa49df090d532634f64e205426: fix: updated remediation for compliance and config audit (#1841) (@chen-keinan)

๐Ÿ“ Documentation ๐Ÿ“

  • ddca9a2ed496ead0e14b45e1276f5054fba5e091: docs: Change broken link from defsec to trivy-policies (#1840) (@maltemorgenstern)
  • d985b4a95a754148f44fe598f8c92fb61646ce8f: docs: Fix some typos and markdown links (#1831) (@maltemorgenstern)

๐Ÿ”ง Miscellaneous ๐Ÿ”ง

  • 82433ce4258bef8e4f26bbdfd51a4069cfc3d462: chore: bump trivy v0.49.1 (#1842) (@chen-keinan)
  • c7c17c6822b76ab1bb126ffc122f3474f62289c1: chore: use light goreleaser (#1837) (@chen-keinan)

๐Ÿ‘ท Other work ๐Ÿ‘ท

  • 7217274abe0db9e2976e8d90505cd61cf1302c48: build(deps): bump codecov/codecov-action from 3 to 4 (#1832) (@dependabot[bot])
  • 9801c5a50842fa8fac4f01220dbb2a8f62bb75a7: build(deps): bump github.com/aws/aws-sdk-go from 1.50.0 to 1.50.10 (#1830) (@dependabot[bot])
  • 32bf0c4be2197fef077510373edcf8104cef1ee6: build(deps): bump github.com/google/go-containerregistry (#1828) (@dependabot[bot])
  • 435171e38e2689e520c9baec1095a18e7ec3185e: build(deps): bump sigstore/cosign-installer from 3.3.0 to 3.4.0 (#1833) (@dependabot[bot])

v0.18.4

3 months ago

Changelog

โœจ Notable Changes โœจ

  • 0b66fb33bace1db467a23053c0627ebea408a200: feat: added config for additional server annotations (#1821) (@seekermarcel)
  • cad62d76a2736ae541c4fb48ebb83956b661ecfa: feat: config for insecure server registry connection (#1819) (@seekermarcel)

๐Ÿ‘ฎ Security updates๐Ÿ‘ฎ

  • 94e8d7231a24c1d27209e3011548cbae7232bfb4: sec: fix runc and buildkit cves (#1825) (@chen-keinan)

๐Ÿ”ง Miscellaneous ๐Ÿ”ง

  • 29d14bf6c8b5473d1a8c026c574cff2fdfcf22a2: chore: bump controller-runtime v0.17.0 (#1817) (@chen-keinan)

๐Ÿ‘ท Other work ๐Ÿ‘ท

  • 6005c264e0523a59160def682e3e7cb74ae51438: Fix formatting in docs/tutorials/integrations/metrics.md (#1816) (@MPV)
  • c44dcef11097c70fdedd1bb1350a31cf90db3a6e: build(deps): bump aquaproj/aqua-installer from 2.2.0 to 2.3.0 (#1813) (@dependabot[bot])
  • e7ef20746ae3468c9c777a4b34d8045884422a7e: build(deps): bump github.com/google/go-containerregistry (#1809) (@dependabot[bot])
  • 4bb64acd764fe1b5b66029b4d486e9d0f29341ca: build(deps): bump github.com/google/uuid from 1.5.0 to 1.6.0 (#1810) (@dependabot[bot])
  • d4e60f0736a809ac41c41f5bde75b2c548b53e93: build(deps): bump peter-evans/repository-dispatch from 2 to 3 (#1812) (@dependabot[bot])
  • b9f0e7d542c542d4c42b233c5b956933f00d3acd: fix markdown url mistakes (#1824) (@bzd111)