What's Changed
🚓 Security Scanner
- Upgraded gitleaks from v8.30.0 to v8.30.1 @secureCodeBoxBot (#3568)
- Upgraded nuclei from v3.7.0 to v3.8.0 @secureCodeBoxBot (#3546, #3612)
- Upgraded nikto to 2.6.0 by @J12934 in #3521
- Upgraded semgrep from 1.151.0 to 1.162.0 @secureCodeBoxBot (#3519, #3528, #3543, #3557, #3566, #3580, #3598, #3599, #3611, #3619, #3631)
- Upgraded sslyze from 6.3.0 to 6.3.1 @secureCodeBoxBot (#3577)
- Upgraded subfinder from v2.12.0 to v2.14.0 @secureCodeBoxBot (#3556, #3621)
- Upgraded trivy from 0.69.1 to 0.70.0 @secureCodeBoxBot (#3533, #3541, #3609)
- Upgraded trivy-sbom from 0.69.1 to 0.70.0 @secureCodeBoxBot (#3532, #3540, #3610)
- Upgraded whatweb from v0.6.3 to v0.6.4 @secureCodeBoxBot (#3583)
🐛 Bug Fixes
- Fix Pipeline failures due to oudated dependencies in Makefile by @J12934 in #3520
- Fix cascading-hooks labels by @aveyrenc in #3573
- Update test assertions for nikto by @Reet00 in #3544
📚 Documentation
- Document Domain Setup by @Weltraumschaf in #3592
- Add netlify config by @Weltraumschaf in #3594
- #3499 Add Fossa to PM Docs by @Weltraumschaf in #3617
🔧 Maintenance
- Fix Sandboxing Issues and ARM Builds for Screenshooter by @J12934 in #3600
- Migrate make to task by @p4trickweiss in #3539
📌 Dependencies
Minor dependency updates (68 pull requests). Click to expand.
- Bump qs from 6.14.1 to 6.14.2 in /documentation in the npm-security-updates group across 1 directory by @dependabot[bot] in #3511
- Bump lodash-es from 4.17.21 to 4.17.23 in /hooks/finding-post-processing/hook by @dependabot[bot] in #3523
- Update dependency kubernetes/kubernetes to v1.35.1 by @renovate[bot] in #3509
- chore(deps): update golang docker tag by @renovate[bot] in #3510
- Bump ajv from 6.12.6 to 6.14.0 in /documentation in the npm-security-updates group across 1 directory by @dependabot[bot] in #3524
- Bump the gradle-version-updates group across 1 directory with 3 updates by @dependabot[bot] in #3525
- Bump the npm-version-updates group across 2 directories with 3 updates by @dependabot[bot] in #3526
- Bump the go-version-updates group across 4 directories with 4 updates by @dependabot[bot] in #3518
- Bump the npm-version-updates group in /documentation with 3 updates by @dependabot[bot] in #3514
- Bump the github-actions-version-updates group across 1 directory with 3 updates by @dependabot[bot] in #3517
- Bump lodash-es from 4.17.21 to 4.17.23 in /hooks/notification/hook by @dependabot[bot] in #3527
- Bump the go-version-updates group across 4 directories with 4 updates by @dependabot[bot] in #3538
- Bump the github-actions-version-updates group across 1 directory with 6 updates by @dependabot[bot] in #3537
- Bump @types/node from 25.3.0 to 25.3.3 in /hook-sdk/nodejs in the npm-version-updates group across 1 directory by @dependabot[bot] in #3536
- Bump @types/node from 25.2.3 to 25.3.3 in /documentation in the npm-version-updates group by @dependabot[bot] in #3535
- chore(deps): update dependency kubernetes/kubernetes to v1.35.2 by @renovate[bot] in #3531
- Bump the gradle-version-updates group in /hooks/persistence-defectdojo/hook with 2 updates by @dependabot[bot] in #3534
- Bump the npm-security-updates group across 1 directory with 2 updates by @dependabot[bot] in #3542
- Bump svgo from 3.3.2 to 3.3.3 in /documentation in the npm-security-updates group across 1 directory by @dependabot[bot] in #3547
- chore(deps): update docker.io/bkimminich/juice-shop docker tag to v19.2.0 by @renovate[bot] in #3548
- chore(deps): update golang docker tag to v1.26.1 by @renovate[bot] in #3545
- chore(deps): update docker.io/bkimminich/juice-shop docker tag to v19.2.1 by @renovate[bot] in #3549
- Bump the go-version-updates group across 3 directories with 3 updates by @dependabot[bot] in #3555
- chore(deps): update debian docker tag to v13.4 by @renovate[bot] in #3561
- Bump the github-actions-version-updates group across 1 directory with 8 updates by @dependabot[bot] in #3565
- Bump @types/node from 25.3.3 to 25.5.0 in /hook-sdk/nodejs in the npm-version-updates group across 1 directory by @dependabot[bot] in #3564
- Bump the npm-version-updates group across 1 directory with 2 updates by @dependabot[bot] in #3563
- Bump the gradle-version-updates group across 1 directory with 4 updates by @dependabot[bot] in #3562
- chore(deps): update dependency go-task/task to v3.49.1 by @renovate[bot] in #3550
- Bump undici from 6.23.0 to 6.24.1 in /hooks/persistence-elastic/hook by @dependabot[bot] in #3559
- chore(deps): update dependency kubernetes/kubernetes to v1.35.3 by @renovate[bot] in #3567
- Bump the gradle-version-updates group in /hooks/persistence-defectdojo/hook with 2 updates by @dependabot[bot] in #3570
- Bump picomatch from 2.3.1 to 2.3.2 in /documentation in the npm-security-updates group across 1 directory by @dependabot[bot] in #3574
- Bump the go-version-updates group across 4 directories with 4 updates by @dependabot[bot] in #3572
- Npmrc by @Weltraumschaf in #3579
- Bump lodash-es from 4.17.23 to 4.18.1 in /hooks/cascading-scans/hook by @dependabot[bot] in #3582
- Bump nodemailer from 7.0.11 to 8.0.4 in /hooks/notification/hook by @dependabot[bot] in #3575
- Bump @types/node from 25.5.0 to 25.5.2 in /hook-sdk/nodejs in the npm-version-updates group across 1 directory by @dependabot[bot] in #3585
- Bump the npm-version-updates group across 1 directory with 3 updates by @dependabot[bot] in #3584
- Bump brace-expansion from 1.1.12 to 1.1.13 in /documentation in the npm-security-updates group across 1 directory by @dependabot[bot] in #3576
- Bump lodash-es from 4.17.23 to 4.18.1 in /hooks/finding-post-processing/hook by @dependabot[bot] in #3588
- Bump the github-actions-version-updates group across 1 directory with 6 updates by @dependabot[bot] in #3586
- Bump github.com/minio/minio-go/v7 from 7.0.99 to 7.0.100 in /operator in the go-version-updates group across 1 directory by @dependabot[bot] in #3587
- chore(deps): update golang docker tag to v1.26.2 by @renovate[bot] in #3589
- Update dependency helm/helm to v4.1.4 by @renovate[bot] in #3596
- Bump the npm-security-updates group across 1 directory with 3 updates by @dependabot[bot] in #3593
- Update All Modules to Latest Go Version by @Weltraumschaf in #3590
- Bump nodemailer from 8.0.4 to 8.0.5 in /hooks/notification/hook by @dependabot[bot] in #3595
- Bump the github-actions-version-updates group across 1 directory with 4 updates by @dependabot[bot] in #3604
- Bump @types/node from 25.5.2 to 25.6.0 in /parser-sdk/nodejs in the npm-version-updates group across 1 directory by @dependabot[bot] in #3603
- Bump the npm-version-updates group in /documentation with 9 updates by @dependabot[bot] in #3602
- Update dependency go-task/task to v3.50.0 by @renovate[bot] in #3601
- Bump follow-redirects from 1.15.11 to 1.16.0 in /documentation in the npm-security-updates group across 1 directory by @dependabot[bot] in #3605
- Update nginx Docker tag to v1.30 by @renovate[bot] in #3606
- Update dependency kubernetes/kubernetes to v1.35.4 by @renovate[bot] in #3608
- Bump the go-version-updates group across 4 directories with 4 updates by @dependabot[bot] in #3616
- Bump the github-actions-version-updates group across 1 directory with 2 updates by @dependabot[bot] in #3615
- Bump the gradle-version-updates group in /hooks/persistence-defectdojo/hook with 2 updates by @dependabot[bot] in #3614
- Bump typescript from 6.0.2 to 6.0.3 in /documentation in the npm-version-updates group by @dependabot[bot] in #3613
- Update dependency kubernetes/kubernetes to v1.36.0 by @renovate[bot] in #3618
- Bump ajv from 8.18.0 to 8.20.0 in /parser-sdk/nodejs in the npm-version-updates group across 1 directory by @dependabot[bot] in #3622
- Update ubuntu Docker tag to v26 by @renovate[bot] in #3620
- Bump github/codeql-action from 4.35.2 to 4.35.3 in /.github/workflows in the github-actions-version-updates group across 1 directory by @dependabot[bot] in #3626
- Update golang Docker tag to v1.26.3 by @renovate[bot] in #3630
- Bump the npm-security-updates group across 3 directories with 1 update by @dependabot[bot] in #3629
- Bump the npm-version-updates group in /documentation with 6 updates by @dependabot[bot] in #3625
- Bump ip-address and socks in /hooks/cascading-scans/hook by @dependabot[bot] in #3628
- Bump fast-uri from 3.1.0 to 3.1.2 in /documentation in the npm-security-updates group across 1 directory by @dependabot[bot] in #3632
- chore(deps): update dependency helm/helm to v4.1.3 by @renovate[bot] in #3505
New Contributors
Full Changelog: v5.6.0...v5.7.0