github anchore/syft v1.38.0

10 hours ago

Added Features

Bug Fixes

  • Support extras statements in Python PDM cataloger [#4352 @wagoodman]
  • Preserve --from argument order [#4350 @wagoodman]
  • SBOM generated by Syft 1.28 contains license elements missing id or name (causing CycloneDX parser error) [#4363]
  • empty PURL output in dependency snapshot format breaks sbom-action [#4311]
  • Interface includes constraint elements, can only be used in type parameters [#4346]
  • Upgrade github.com/nwaples/rardecode@v1.1.3 to 2.2.1 [#4338]
  • Upgrade to Golang 1.25.4 [#4341]

Additional Changes

(Full Changelog)

Don't miss a new syft release

NewReleases is sending notifications on new releases.