artifacthub helm/securecodebox/persistence-defectdojo 3.9.0
v3.9.0

latest releases: 4.9.0, 4.8.0, 4.7.0...
2 years ago

Changes

This release contains the following changes ๐ŸŽ‰. Help spread the word or leave a GitHub star if you like it ๐Ÿ˜‰

GitHub commits since tagged version GitHub Repo stars Twitter URL

๐Ÿš€ Features

โš ๏ธ Potential Breaking Scanner Upgrades

Important: please be aware that this release contains some potential breaking scanner updates. As discussed in ADR 0011 we accept potentially breaking changes delivered by security scanner projects within our minor updates. In the future, minor releases can contain changes that are breaking to some users. These changes will be highlighted in the release notes. Major releases will be used to indicate larger compatibility-breaking changes.

  • Upgraded nuclei from v2.6.2 to v2.6.5 @secureCodeBoxBot (#1014)
  • Upgraded trivy from 0.22.0 to 0.24.2 @secureCodeBoxBot (#948)
    • We splitted up the existing trivy scanType trivy into three new ones due to trivy changes: triviy-image, triviy-filesystem, triviy-repo
  • Upgraded sslyze from v4.1.0 to v5.0.2 @secureCodeBoxBot (#844)
    • SSLyze removed or replaced a number of parameters. In particular:
      --regular was replaced with --mozilla_config {modern,intermediate,old}
      --resum_rate was replaced with --resum_attempts
    • New commmand-line options:
      --elliptic_curves Test a server for supported elliptic curves.
    • Public-Key-Pins headers are no longer checked by SSLyze, as the pinning feature has been removed from most browsers
  • Upgrade gitleaks from v7.6.1 to v8.3.0 @secureCodeBoxBot (#830)
    • Gitleaks no longer supports cloning natively. To clone a repository, use an init container as described in the updated documentation.

๐Ÿš“ Security Scanner

๐Ÿ› Bug Fixes

๐Ÿงช Test

  • Added MakeFile to run all hook and scanner tests @RamiSouai (#1032)
  • Autodiscovery is now built within the CI pipeline and no longer pushes to Dockerhub @Ilyesbdlala (#1063)
  • Use matrix in CI for hook integration-test @RamiSouai (#1035)
  • Inherit Makefile Integration Tests command for hooks @RamiSouai (#1028)
  • Improves the integration-tests makefile process for scanners @Ilyesbdlala (#1033)
  • Removed dependency on Dockerhub for Test-Scan scantypes in integration tests @Ilyesbdlala (#1022)

๐Ÿ“š Documentation

๐Ÿ”ง Maintenance

๐Ÿ“Œ Dependencies

Distribution

Artifact HUB
Docker Hub

Contributors

Thanks to all our contributors supporting this project ๐Ÿค—
@Ilyesbdlala, @J12934, @RamiSouai, @SebieF, @Weltraumschaf, @johannawalker, @malexmave, @rseedorff, @secureCodeBoxBot, @snyk-bot and @the-simmon

Don't miss a new persistence-defectdojo release

NewReleases is sending notifications on new releases.