Releases: anchore/syft
v0.25.0
Changelog
v0.25.0 (2021-10-07)
Implemented enhancements:
- Catalog Go modules used in Go binaries #434 (wagoodman) (spiffcs)
- Add option to output SBOM report to a file #530 (wagoodman)
- Extend license mapping for common SPDX license names #509 (spiffcs)
Fixed bugs:
- SPDX output is not consistently sorted #522 (spiffcs)
- Missing/incorrect SPDX fields: DocumentName, DocumentNamespace #528 (spiffcs)
- Allow file digests instances to be optional for alpine metadata #531 (wagoodman)
- Stable sort package CPE array (JSON and SPDX) #522 (spiffcs)
- Remove go and rust catalogers from image cataloger set #539 (spiffcs)
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:v0.25.0docker pull anchore/syft:v0docker pull anchore/syft:v0.25
v0.24.1
Changelog
v0.24.1 (2021-09-27)
Fixed bugs:
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:v0.24.1docker pull anchore/syft:v0docker pull anchore/syft:v0.24
v0.24.0
Changelog
v0.24.0 (2021-09-23)
Implemented enhancements:
Fixed bugs:
- Filter out CPE product candidates that are asterisks #513 (wagoodman)
- lower log file permissions to 0644 #511 (spiffcs)
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:v0.24.0docker pull anchore/syft:v0docker pull anchore/syft:v0.24
v0.23.0
Changelog
v0.23.0 (2021-09-13)
Implemented enhancements:
- Allow syft to populate distro data for all types #499
- Add directory source to power-user subcommand #467 (houdini91)
- Updated the distro package to include SLES #489 (Toure)
- Modify CPE vendor candidate generation approach #484 (wagoodman)
Fixed bugs:
- Distro not detected for centos:6 #429
- On a purl a name must be a percent-encoded string #351
- Cataloging root dir takes a very long time #119
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:v0.23.0docker pull anchore/syft:v0docker pull anchore/syft:v0.23
v0.21.0
Changelog
v0.21.0 (2021-08-20)
Implemented enhancements:
- Add Pipenv support (Pipfile.lock) #242
Fixed bugs:
- Only "top level" lock files should be inspected for NPM packages #431
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:latestdocker pull anchore/syft:v0.21.0docker pull anchore/syft:v0docker pull anchore/syft:v0.21
v0.20.0
Changelog
v0.20.0 (2021-08-18)
Implemented enhancements:
- Enhance CPE generation to improve downstream matching in grype #471
- Add option to enable http connection to registries #482 (kzantow)
Fixed bugs:
- Running syft without arguments doesn't display help text #454
- Use of asterisk in CPEs leading to many false positives in vulnerability matching in grype #396
- Fix directory resolver indexer to report one progressable object #457 (wagoodman)
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:latestdocker pull anchore/syft:v0.20.0docker pull anchore/syft:v0docker pull anchore/syft:v0.20
v0.19.1
Changelog
v0.19.1 (2021-06-30)
Fixed bugs:
- Redirect cursor hide/show to stderr #456 (wagoodman)
- Add help message when no arguments are provided #455 (wagoodman)
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:latestdocker pull anchore/syft:v0.19.1docker pull anchore/syft:v0docker pull anchore/syft:v0.19
v0.19.0
Changelog
v0.19.0 (2021-06-29)
Enhancements:
- Support Scanning a root filesystem #283
Fixed bugs:
- Disk space not freed after syft command #416
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:latestdocker pull anchore/syft:v0.19.0docker pull anchore/syft:v0docker pull anchore/syft:v0.19
v0.18.0
Changelog
v0.18.0 (2021-06-29)
Implemented enhancements:
Fixed bugs:
- Disk space not freed after syft command #416
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:latestdocker pull anchore/syft:v0.18.0docker pull anchore/syft:v0docker pull anchore/syft:v0.18
v0.17.1
Changelog
v0.17.1 (2021-06-19)
Fixed bugs:
- Incorrect version detection for NPM packages found via yarn.lock #430
* This Changelog was automatically generated by github_changelog_generator
Docker images
docker pull anchore/syft:latestdocker pull anchore/syft:v0.17.1docker pull anchore/syft:v0docker pull anchore/syft:v0.17