Skip to content

Commit b6ec2eb

Browse files
chore(deps): bump github.com/anchore/syft from 1.19.0 to 1.21.0
Bumps [github.com/anchore/syft](https://github.com/anchore/syft) from 1.19.0 to 1.21.0. - [Release notes](https://github.com/anchore/syft/releases) - [Changelog](https://github.com/anchore/syft/blob/main/.goreleaser.yaml) - [Commits](anchore/syft@v1.19.0...v1.21.0) --- updated-dependencies: - dependency-name: github.com/anchore/syft dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] <[email protected]>
1 parent ecd9a2e commit b6ec2eb

File tree

2 files changed

+127
-105
lines changed

2 files changed

+127
-105
lines changed

go.mod

Lines changed: 34 additions & 30 deletions
Original file line numberDiff line numberDiff line change
@@ -1,7 +1,6 @@
11
module github.com/zarf-dev/zarf
22

33
go 1.23.3
4-
54
// TODO (@AABRO): Pending merge into github.com/gojsonschema/gojsonschema (https://github.com/gojsonschema/gojsonschema/pull/5)
65
replace github.com/xeipuuv/gojsonschema => github.com/defenseunicorns/gojsonschema v0.0.0-20231116163348-e00f069122d6
76

@@ -13,8 +12,8 @@ require (
1312
github.com/Masterminds/semver/v3 v3.3.1
1413
github.com/agnivade/levenshtein v1.2.1
1514
github.com/anchore/clio v0.0.0-20241115144204-29e89f9fa837
16-
github.com/anchore/stereoscope v0.0.13
17-
github.com/anchore/syft v1.19.0
15+
github.com/anchore/stereoscope v0.1.0
16+
github.com/anchore/syft v1.21.0
1817
github.com/avast/retry-go/v4 v4.6.1
1918
github.com/defenseunicorns/pkg/helpers/v2 v2.0.1
2019
github.com/defenseunicorns/pkg/oci v1.0.2
@@ -78,13 +77,16 @@ require (
7877
github.com/agext/levenshtein v1.2.1 // indirect
7978
github.com/anchore/archiver/v3 v3.5.3-0.20241210171143-5b1d8d1c7c51 // indirect
8079
github.com/anchore/go-collections v0.0.0-20240216171411-9321230ce537 // indirect
80+
github.com/bitnami/go-version v0.0.0-20250131085805-b1f57a8634ef // indirect
8181
github.com/bshuster-repo/logrus-logstash-hook v1.0.0 // indirect
8282
github.com/buildkite/roko v1.2.0 // indirect
8383
github.com/census-instrumentation/opencensus-proto v0.4.1 // indirect
84-
github.com/charmbracelet/x/ansi v0.4.5 // indirect
84+
github.com/charmbracelet/colorprofile v0.2.3-0.20250311203215-f60798e515dc // indirect
85+
github.com/charmbracelet/x/ansi v0.8.0 // indirect
86+
github.com/charmbracelet/x/cellbuf v0.0.13-0.20250311204145-2c3ea96c31dd // indirect
8587
github.com/charmbracelet/x/term v0.2.1 // indirect
8688
github.com/cncf/xds/go v0.0.0-20240905190251-b4127c9b8d78 // indirect
87-
github.com/containerd/containerd/api v1.7.19 // indirect
89+
github.com/containerd/containerd/api v1.8.0 // indirect
8890
github.com/containerd/errdefs v0.3.0 // indirect
8991
github.com/containerd/platforms v0.2.1 // indirect
9092
github.com/coreos/go-systemd/v22 v22.5.0 // indirect
@@ -105,9 +107,10 @@ require (
105107
github.com/hashicorp/golang-lru/v2 v2.0.7 // indirect
106108
github.com/hashicorp/hcl/v2 v2.23.0 // indirect
107109
github.com/in-toto/attestation v1.1.0 // indirect
108-
github.com/jedib0t/go-pretty/v6 v6.6.5 // indirect
110+
github.com/jedib0t/go-pretty/v6 v6.6.7 // indirect
109111
github.com/moby/docker-image-spec v1.3.1 // indirect
110112
github.com/moby/sys/userns v0.1.0 // indirect
113+
github.com/morikuni/aec v1.0.0 // indirect
111114
github.com/ncruces/go-strftime v0.1.9 // indirect
112115
github.com/onsi/gomega v1.36.1 // indirect
113116
github.com/otiai10/mint v1.6.3 // indirect
@@ -116,9 +119,11 @@ require (
116119
github.com/redis/go-redis/extra/redisotel/v9 v9.0.5 // indirect
117120
github.com/redis/go-redis/v9 v9.7.0 // indirect
118121
github.com/rogpeppe/go-internal v1.14.1 // indirect
122+
github.com/rust-secure-code/go-rustaudit v0.0.0-20250226111315-e20ec32e963c // indirect
119123
github.com/secDre4mer/pkcs7 v0.0.0-20240322103146-665324a4461d // indirect
120124
github.com/sigstore/protobuf-specs v0.4.0 // indirect
121125
github.com/sigstore/sigstore-go v0.6.1 // indirect
126+
github.com/spdx/gordf v0.0.0-20201111095634-7098f93598fb // indirect
122127
github.com/theupdateframework/go-tuf/v2 v2.0.1 // indirect
123128
github.com/theupdateframework/notary v0.7.0 // indirect
124129
github.com/x448/float16 v0.8.4 // indirect
@@ -216,7 +221,7 @@ require (
216221
github.com/anchore/go-struct-converter v0.0.0-20221118182256-c68fdcfa2092 // indirect
217222
github.com/anchore/go-version v1.2.2-0.20210903204242-51efa5b487c4 // indirect
218223
github.com/anchore/grype v0.86.1 // indirect
219-
github.com/anchore/packageurl-go v0.1.1-0.20250117185454-edf36a908b10 // indirect
224+
github.com/anchore/packageurl-go v0.1.1-0.20250220190351-d62adb6e1115 // indirect
220225
github.com/andybalholm/brotli v1.1.1 // indirect
221226
github.com/apparentlymart/go-textseg/v15 v15.0.0 // indirect
222227
github.com/aquasecurity/go-pep440-version v0.0.1 // indirect
@@ -231,16 +236,16 @@ require (
231236
github.com/aws/aws-sdk-go-v2/internal/configsources v1.3.34 // indirect
232237
github.com/aws/aws-sdk-go-v2/internal/endpoints/v2 v2.6.34 // indirect
233238
github.com/aws/aws-sdk-go-v2/internal/ini v1.8.3 // indirect
234-
github.com/aws/aws-sdk-go-v2/service/ecr v1.20.2 // indirect
235-
github.com/aws/aws-sdk-go-v2/service/ecrpublic v1.18.2 // indirect
239+
github.com/aws/aws-sdk-go-v2/service/ecr v1.40.3 // indirect
240+
github.com/aws/aws-sdk-go-v2/service/ecrpublic v1.31.2 // indirect
236241
github.com/aws/aws-sdk-go-v2/service/internal/accept-encoding v1.12.3 // indirect
237242
github.com/aws/aws-sdk-go-v2/service/internal/presigned-url v1.12.15 // indirect
238243
github.com/aws/aws-sdk-go-v2/service/kms v1.38.1 // indirect
239244
github.com/aws/aws-sdk-go-v2/service/sso v1.25.1 // indirect
240245
github.com/aws/aws-sdk-go-v2/service/ssooidc v1.29.1 // indirect
241246
github.com/aws/aws-sdk-go-v2/service/sts v1.33.17 // indirect
242247
github.com/aws/smithy-go v1.22.2 // indirect
243-
github.com/awslabs/amazon-ecr-credential-helper/ecr-login v0.0.0-20231024185945-8841054dbdb8 // indirect
248+
github.com/awslabs/amazon-ecr-credential-helper/ecr-login v0.9.1 // indirect
244249
github.com/aymanbagabas/go-osc52/v2 v2.0.1 // indirect
245250
github.com/bahlo/generic-list-go v0.2.0 // indirect
246251
github.com/becheran/wildmatch-go v1.0.0 // indirect
@@ -249,7 +254,7 @@ require (
249254
github.com/blang/semver v3.5.1+incompatible // indirect
250255
github.com/blang/semver/v4 v4.0.0 // indirect
251256
github.com/bmatcuk/doublestar/v2 v2.0.4 // indirect
252-
github.com/bmatcuk/doublestar/v4 v4.8.0 // indirect
257+
github.com/bmatcuk/doublestar/v4 v4.8.1 // indirect
253258
github.com/buger/jsonparser v1.1.1 // indirect
254259
github.com/buildkite/agent/v3 v3.81.0 // indirect
255260
github.com/buildkite/go-pipeline v0.13.1 // indirect
@@ -258,22 +263,22 @@ require (
258263
github.com/cespare/xxhash/v2 v2.3.0 // indirect
259264
github.com/chai2010/gettext-go v1.0.2 // indirect
260265
github.com/charmbracelet/bubbles v0.20.0 // indirect
261-
github.com/charmbracelet/bubbletea v1.2.4 // indirect
266+
github.com/charmbracelet/bubbletea v1.3.4 // indirect
262267
github.com/charmbracelet/harmonica v0.2.0 // indirect
263-
github.com/charmbracelet/lipgloss v1.0.0 // indirect
268+
github.com/charmbracelet/lipgloss v1.1.0 // indirect
264269
github.com/chrismellard/docker-credential-acr-env v0.0.0-20230304212654-82a0ddb27589 // indirect
265270
github.com/clbanning/mxj/v2 v2.7.0 // indirect
266271
github.com/cloudflare/circl v1.6.0 // indirect
267272
github.com/cockroachdb/apd/v3 v3.2.1 // indirect
268273
github.com/common-nighthawk/go-figure v0.0.0-20210622060536-734e95fb86be // indirect
269274
github.com/containerd/cgroups v1.1.0 // indirect
270275
github.com/containerd/console v1.0.4-0.20230313162750-1ae8d489ac81 // indirect
271-
github.com/containerd/containerd v1.7.24 // indirect
272-
github.com/containerd/continuity v0.4.2 // indirect
276+
github.com/containerd/containerd v1.7.26 // indirect
277+
github.com/containerd/continuity v0.4.4 // indirect
273278
github.com/containerd/fifo v1.1.0 // indirect
274279
github.com/containerd/log v0.1.0 // indirect
275280
github.com/containerd/stargz-snapshotter/estargz v0.16.3 // indirect
276-
github.com/containerd/ttrpc v1.2.5 // indirect
281+
github.com/containerd/ttrpc v1.2.7 // indirect
277282
github.com/containerd/typeurl/v2 v2.1.1 // indirect
278283
github.com/coreos/go-oidc/v3 v3.11.0 // indirect
279284
github.com/cpuguy83/go-md2man/v2 v2.0.6 // indirect
@@ -287,9 +292,9 @@ require (
287292
github.com/digitorus/pkcs7 v0.0.0-20230818184609-3a137a874352 // indirect
288293
github.com/digitorus/timestamp v0.0.0-20231217203849-220c5c2851b7 // indirect
289294
github.com/dimchansky/utfbom v1.1.1 // indirect
290-
github.com/docker/cli v27.5.1+incompatible
295+
github.com/docker/cli v28.0.1+incompatible
291296
github.com/docker/distribution v2.8.3+incompatible // indirect
292-
github.com/docker/docker v27.5.0+incompatible // indirect
297+
github.com/docker/docker v28.0.1+incompatible // indirect
293298
github.com/docker/docker-credential-helpers v0.8.2 // indirect
294299
github.com/docker/go-connections v0.5.0 // indirect
295300
github.com/docker/go-events v0.0.0-20190806004212-e31b211e4f1c // indirect
@@ -306,7 +311,7 @@ require (
306311
github.com/exponent-io/jsonpath v0.0.0-20210407135951-1de76d718b3f // indirect
307312
github.com/facebookincubator/nvdtools v0.1.5 // indirect
308313
github.com/fatih/camelcase v1.0.0 // indirect
309-
github.com/felixge/fgprof v0.9.3 // indirect
314+
github.com/felixge/fgprof v0.9.5 // indirect
310315
github.com/felixge/httpsnoop v1.0.4 // indirect
311316
github.com/fluxcd/pkg/apis/acl v0.6.0 // indirect
312317
github.com/fsnotify/fsnotify v1.8.0 // indirect
@@ -395,7 +400,7 @@ require (
395400
github.com/kastenhq/goversion v0.0.0-20230811215019-93b2f8823953 // indirect
396401
github.com/kballard/go-shellquote v0.0.0-20180428030007-95032a82bc51 // indirect
397402
github.com/kevinburke/ssh_config v1.2.0 // indirect
398-
github.com/klauspost/compress v1.17.11 // indirect
403+
github.com/klauspost/compress v1.18.0 // indirect
399404
github.com/klauspost/pgzip v1.2.6 // indirect
400405
github.com/knqyf263/go-apk-version v0.0.0-20200609155635-041fdbb8563f // indirect
401406
github.com/knqyf263/go-deb-version v0.0.0-20190517075300-09fca494f03d // indirect
@@ -418,7 +423,6 @@ require (
418423
github.com/mattn/go-runewidth v0.0.16 // indirect
419424
github.com/mattn/go-sqlite3 v2.0.3+incompatible // indirect
420425
github.com/mgutz/ansi v0.0.0-20200706080929-d51e80ef957d // indirect
421-
github.com/microsoft/go-rustaudit v0.0.0-20220730194248-4b17361d90a5 // indirect
422426
github.com/miekg/pkcs11 v1.1.1 // indirect
423427
github.com/mikefarah/yq/v4 v4.45.1
424428
github.com/mitchellh/copystructure v1.2.0 // indirect
@@ -441,7 +445,7 @@ require (
441445
github.com/mozillazg/docker-credential-acr-helper v0.4.0 // indirect
442446
github.com/muesli/ansi v0.0.0-20230316100256-276c6243b2f6 // indirect
443447
github.com/muesli/cancelreader v0.2.2 // indirect
444-
github.com/muesli/termenv v0.15.2 // indirect
448+
github.com/muesli/termenv v0.16.0 // indirect
445449
github.com/munnerz/goautoneg v0.0.0-20191010083416-a7dc8b61c822 // indirect
446450
github.com/mxk/go-flowrate v0.0.0-20140419014527-cca7078d478f // indirect
447451
github.com/nozzle/throttler v0.0.0-20180817012639-2ea982251481 // indirect
@@ -463,7 +467,7 @@ require (
463467
github.com/pelletier/go-toml v1.9.5 // indirect
464468
github.com/pelletier/go-toml/v2 v2.2.3 // indirect
465469
github.com/peterbourgon/diskv v2.0.1+incompatible // indirect
466-
github.com/pierrec/lz4/v4 v4.1.21 // indirect
470+
github.com/pierrec/lz4/v4 v4.1.22 // indirect
467471
github.com/pjbgf/sha1cd v0.3.2 // indirect
468472
github.com/pkg/browser v0.0.0-20240102092130-5ac0b6a4141c // indirect
469473
github.com/pkg/profile v1.7.0 // indirect
@@ -501,12 +505,12 @@ require (
501505
github.com/skratchdot/open-golang v0.0.0-20200116055534-eef842397966 // indirect
502506
github.com/sourcegraph/conc v0.3.0 // indirect
503507
github.com/spdx/tools-golang v0.5.5 // indirect
504-
github.com/spf13/afero v1.12.0 // indirect
508+
github.com/spf13/afero v1.14.0 // indirect
505509
github.com/spf13/cast v1.7.0 // indirect
506510
github.com/spiffe/go-spiffe/v2 v2.3.0 // indirect
507511
github.com/subosito/gotenv v1.6.0 // indirect
508512
github.com/sylabs/sif/v2 v2.20.2 // indirect
509-
github.com/sylabs/squashfs v1.0.4 // indirect
513+
github.com/sylabs/squashfs v1.0.5 // indirect
510514
github.com/syndtr/goleveldb v1.0.1-0.20220721030215-126854af5e6d // indirect
511515
github.com/tchap/go-patricia/v2 v2.3.1 // indirect
512516
github.com/thales-e-security/pool v0.0.2 // indirect
@@ -547,7 +551,7 @@ require (
547551
go.uber.org/multierr v1.11.0 // indirect
548552
go.uber.org/zap v1.27.0 // indirect
549553
golang.org/x/exp v0.0.0-20240808152545-0cdaa3abc0fa // indirect
550-
golang.org/x/mod v0.22.0 // indirect
554+
golang.org/x/mod v0.24.0 // indirect
551555
golang.org/x/net v0.37.0 // indirect
552556
golang.org/x/oauth2 v0.25.0 // indirect
553557
golang.org/x/sys v0.31.0 // indirect
@@ -574,10 +578,10 @@ require (
574578
k8s.io/kube-openapi v0.0.0-20241212222426-2c72e554b1e7 // indirect
575579
k8s.io/metrics v0.32.3 // indirect
576580
k8s.io/utils v0.0.0-20241104100929-3ea5e8cea738 // indirect
577-
modernc.org/libc v1.55.3 // indirect
578-
modernc.org/mathutil v1.6.0 // indirect
579-
modernc.org/memory v1.8.0 // indirect
580-
modernc.org/sqlite v1.34.5 // indirect
581+
modernc.org/libc v1.61.13 // indirect
582+
modernc.org/mathutil v1.7.1 // indirect
583+
modernc.org/memory v1.8.2 // indirect
584+
modernc.org/sqlite v1.36.1 // indirect
581585
oras.land/oras-go v1.2.5 // indirect
582586
sigs.k8s.io/controller-runtime v0.20.2
583587
sigs.k8s.io/json v0.0.0-20241010143419-9aa6b5e7a4b3 // indirect

0 commit comments

Comments
 (0)