Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / anchore/grype-db issues and pull requests

#428 - Update grype-db bootstrap tools to latest versions.

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] 12 days ago
Labels: dependencies

#427 - chore(deps-dev): Bump werkzeug from 3.0.3 to 3.0.6

Pull Request - State: closed - Opened by dependabot[bot] 15 days ago
Labels: dependencies, python

#426 - chore(deps): Bump golang.org/x/text from 0.19.0 to 0.20.0

Pull Request - State: closed - Opened by dependabot[bot] 15 days ago
Labels: dependencies, go

#425 - chore(deps): Bump golang.org/x/sync from 0.8.0 to 0.9.0

Pull Request - State: open - Opened by dependabot[bot] 15 days ago
Labels: dependencies, go

#425 - chore(deps): Bump golang.org/x/sync from 0.8.0 to 0.9.0

Pull Request - State: closed - Opened by dependabot[bot] 15 days ago - 1 comment
Labels: dependencies, go

#424 - chore(deps): Bump github.com/anchore/grype from 0.83.0 to 0.84.0

Pull Request - State: closed - Opened by dependabot[bot] 17 days ago
Labels: dependencies, go

#424 - chore(deps): Bump github.com/anchore/grype from 0.83.0 to 0.84.0

Pull Request - State: closed - Opened by dependabot[bot] 17 days ago
Labels: dependencies, go

#423 - chore(deps): Bump github.com/adrg/xdg from 0.5.1 to 0.5.3

Pull Request - State: closed - Opened by dependabot[bot] 22 days ago - 1 comment
Labels: dependencies, go

#423 - chore(deps): Bump github.com/adrg/xdg from 0.5.1 to 0.5.3

Pull Request - State: closed - Opened by dependabot[bot] 22 days ago - 1 comment
Labels: dependencies, go

#422 - chore(deps): Bump github.com/adrg/xdg from 0.5.1 to 0.5.2

Pull Request - State: closed - Opened by dependabot[bot] 24 days ago - 1 comment
Labels: dependencies, go

#422 - chore(deps): Bump github.com/adrg/xdg from 0.5.1 to 0.5.2

Pull Request - State: closed - Opened by dependabot[bot] 24 days ago - 1 comment
Labels: dependencies, go

#421 - Update Grype to v0.83.0

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] 25 days ago - 1 comment
Labels: dependencies

#421 - Update Grype to v0.83.0

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] 25 days ago - 1 comment
Labels: dependencies

#420 - chore(deps): Bump github.com/anchore/grype from 0.82.2 to 0.83.0

Pull Request - State: closed - Opened by dependabot[bot] 25 days ago
Labels: enhancement, dependencies, go

#419 - integration: integrate syft, grype, stereosope

Pull Request - State: closed - Opened by willmurphyscode 25 days ago - 1 comment

#419 - integration: integrate syft, grype, stereosope

Pull Request - State: closed - Opened by willmurphyscode 25 days ago - 1 comment

#418 - Capture CVSSv4 scores from NVD

Issue - State: open - Opened by joshbressers 28 days ago
Labels: enhancement

#418 - Capture CVSSv4 scores from NVD

Issue - State: open - Opened by joshbressers 28 days ago
Labels: enhancement

#417 - chore(deps): Bump actions/setup-go from 5.0.2 to 5.1.0

Pull Request - State: closed - Opened by dependabot[bot] 29 days ago
Labels: dependencies, github_actions

#417 - chore(deps): Bump actions/setup-go from 5.0.2 to 5.1.0

Pull Request - State: closed - Opened by dependabot[bot] 29 days ago
Labels: dependencies, github_actions

#416 - chore(deps): Bump actions/checkout from 4.2.1 to 4.2.2

Pull Request - State: closed - Opened by dependabot[bot] 30 days ago
Labels: dependencies, github_actions

#416 - chore(deps): Bump actions/checkout from 4.2.1 to 4.2.2

Pull Request - State: closed - Opened by dependabot[bot] 30 days ago
Labels: dependencies, github_actions

#415 - Add symlink support for cache backup and restore

Pull Request - State: closed - Opened by wagoodman about 1 month ago
Labels: enhancement

#415 - Add symlink support for cache backup and restore

Pull Request - State: closed - Opened by wagoodman about 1 month ago
Labels: enhancement

#414 - chore(deps): Bump actions/cache from 4.1.1 to 4.1.2

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies, github_actions

#414 - chore(deps): Bump actions/cache from 4.1.1 to 4.1.2

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies, github_actions

#413 - Update Grype to v0.82.2

Pull Request - State: closed - Opened by wagoodman about 1 month ago

#412 - chore(deps): Bump github.com/adrg/xdg from 0.5.0 to 0.5.1

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies, go

#412 - chore(deps): Bump github.com/adrg/xdg from 0.5.0 to 0.5.1

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies, go

#411 - feat: Add config for inferring fixes from NVD

Pull Request - State: closed - Opened by westonsteimel about 1 month ago
Labels: enhancement

#410 - Add config for CPE part filtering

Pull Request - State: closed - Opened by wagoodman about 1 month ago
Labels: enhancement

#410 - Add config for CPE part filtering

Pull Request - State: closed - Opened by wagoodman about 1 month ago
Labels: enhancement

#409 - Update Grype to v0.82.1

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] about 1 month ago
Labels: dependencies

#409 - Update Grype to v0.82.1

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] about 1 month ago
Labels: dependencies

#408 - DONT MERGE: bump grype pre release

Pull Request - State: closed - Opened by willmurphyscode about 1 month ago - 1 comment
Labels: dependencies

#408 - DONT MERGE: bump grype pre release

Pull Request - State: closed - Opened by willmurphyscode about 1 month ago - 1 comment
Labels: dependencies

#407 - chore(deps): Bump github.com/klauspost/compress from 1.17.10 to 1.17.11

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies, go

#407 - chore(deps): Bump github.com/klauspost/compress from 1.17.10 to 1.17.11

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies, go

#406 - chore(deps): Bump mxschmitt/action-tmate from 3.18 to 3.19

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies, github_actions

#405 - Update the release docs

Pull Request - State: closed - Opened by wagoodman about 1 month ago
Labels: changelog-ignore

#404 - chore(deps): Bump actions/cache from 4.0.2 to 4.1.1

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies, github_actions

#404 - chore(deps): Bump actions/cache from 4.0.2 to 4.1.1

Pull Request - State: closed - Opened by dependabot[bot] about 1 month ago
Labels: dependencies, github_actions

#403 - chore(deps): Bump github.com/anchore/grype from 0.81.1-0.20240930133029-8a687c4a5522 to 0.82.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, go

#403 - chore(deps): Bump github.com/anchore/grype from 0.81.1-0.20240930133029-8a687c4a5522 to 0.82.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, go

#402 - chore(deps): Bump actions/checkout from 4.2.0 to 4.2.1

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, github_actions

#401 - chore(deps): Bump actions/cache from 4.0.2 to 4.1.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, github_actions

#401 - chore(deps): Bump actions/cache from 4.0.2 to 4.1.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, github_actions

#400 - chore(deps): Bump golang.org/x/text from 0.18.0 to 0.19.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, go

#400 - chore(deps): Bump golang.org/x/text from 0.18.0 to 0.19.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago - 1 comment
Labels: dependencies, go

#399 - chore: add azurelinux 3 namespace to validation list

Pull Request - State: closed - Opened by westonsteimel about 2 months ago
Labels: changelog-ignore

#399 - chore: add azurelinux 3 namespace to validation list

Pull Request - State: closed - Opened by westonsteimel about 2 months ago
Labels: changelog-ignore

#398 - Installation Instructions Do Not Work as Written

Issue - State: open - Opened by wits-zach about 2 months ago - 6 comments
Labels: bug, documentation

#398 - Installation Instructions Do Not Work as Written

Issue - State: open - Opened by wits-zach about 2 months ago - 7 comments
Labels: bug, documentation

#397 - Use migrated grype DB distribution package

Pull Request - State: closed - Opened by wagoodman about 2 months ago

#396 - chore(deps): Bump actions/checkout from 4.1.7 to 4.2.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, github_actions

#396 - chore(deps): Bump actions/checkout from 4.1.7 to 4.2.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, github_actions

#395 - chore(deps): Bump github.com/anchore/grype from 0.80.3-0.20240924175453-be83782134b3 to 0.81.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, go

#395 - chore(deps): Bump github.com/anchore/grype from 0.80.3-0.20240924175453-be83782134b3 to 0.81.0

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, go

#394 - Add awaiting response management

Pull Request - State: closed - Opened by wagoodman about 2 months ago
Labels: changelog-ignore

#394 - Add awaiting response management

Pull Request - State: closed - Opened by wagoodman about 2 months ago
Labels: changelog-ignore

#393 - fix: allow empty matches on old schema versions

Pull Request - State: closed - Opened by willmurphyscode about 2 months ago
Labels: changelog-ignore

#393 - fix: allow empty matches on old schema versions

Pull Request - State: closed - Opened by willmurphyscode about 2 months ago
Labels: changelog-ignore

#392 - Update Grype to v0.80.2

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] about 2 months ago - 1 comment
Labels: dependencies

#392 - Update Grype to v0.80.2

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] about 2 months ago - 1 comment
Labels: dependencies

#391 - chore(deps): Bump github.com/klauspost/compress from 1.17.9 to 1.17.10

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, go

#391 - chore(deps): Bump github.com/klauspost/compress from 1.17.9 to 1.17.10

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, go

#390 - Update Grype to v0.80.2

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] about 2 months ago
Labels: dependencies

#390 - Update Grype to v0.80.2

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] about 2 months ago
Labels: dependencies

#389 - chore(deps): Bump github.com/klauspost/compress from 1.17.9 to 1.17.10

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, go

#389 - chore(deps): Bump github.com/klauspost/compress from 1.17.9 to 1.17.10

Pull Request - State: closed - Opened by dependabot[bot] about 2 months ago
Labels: dependencies, go

#388 - chore(deps): Bump peter-evans/create-pull-request from 7.0.3 to 7.0.5

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, github_actions

#388 - chore(deps): Bump peter-evans/create-pull-request from 7.0.3 to 7.0.5

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, github_actions

#387 - Change DB publish workflow to account for V6

Issue - State: open - Opened by wagoodman 2 months ago
Labels: enhancement

#387 - Change DB publish workflow to account for V6

Issue - State: open - Opened by wagoodman 2 months ago
Labels: enhancement

#386 - fix: use new platform logic even for only one platform

Pull Request - State: closed - Opened by willmurphyscode 2 months ago
Labels: bug

#386 - fix: use new platform logic even for only one platform

Pull Request - State: closed - Opened by willmurphyscode 2 months ago
Labels: bug

#385 - chore(deps): Bump github.com/opencontainers/runc from 1.1.12 to 1.1.14

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, go

#385 - chore(deps): Bump github.com/opencontainers/runc from 1.1.12 to 1.1.14

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, go

#384 - chore(deps-dev): Bump cryptography from 42.0.4 to 43.0.1

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, python

#384 - chore(deps-dev): Bump cryptography from 42.0.4 to 43.0.1

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, python

#383 - chore(deps): Bump peter-evans/create-pull-request from 6.1.0 to 7.0.3

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, github_actions

#383 - chore(deps): Bump peter-evans/create-pull-request from 6.1.0 to 7.0.3

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, github_actions

#382 - Add JVM package version format to NVD records

Pull Request - State: closed - Opened by wagoodman 2 months ago
Labels: enhancement

#382 - Add JVM package version format to NVD records

Pull Request - State: closed - Opened by wagoodman 2 months ago
Labels: enhancement

#381 - chore(deps): Bump peter-evans/create-pull-request from 6.1.0 to 7.0.2

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, github_actions

#380 - Update Grype to v0.80.1

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] 2 months ago
Labels: dependencies

#380 - Update Grype to v0.80.1

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] 2 months ago
Labels: dependencies

#379 - chore(deps): Bump github.com/anchore/grype from 0.80.0 to 0.80.1

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago - 1 comment
Labels: dependencies, go

#378 - Update grype-db bootstrap tools to latest versions.

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] 2 months ago
Labels: dependencies

#378 - Update grype-db bootstrap tools to latest versions.

Pull Request - State: closed - Opened by anchore-actions-token-generator[bot] 2 months ago
Labels: dependencies

#377 - chore(deps): Bump gorm.io/gorm from 1.25.11 to 1.25.12

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, go

#377 - chore(deps): Bump gorm.io/gorm from 1.25.11 to 1.25.12

Pull Request - State: closed - Opened by dependabot[bot] 2 months ago
Labels: dependencies, go

#376 - chore(deps): Bump peter-evans/create-pull-request from 6.1.0 to 7.0.1

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, github_actions

#376 - chore(deps): Bump peter-evans/create-pull-request from 6.1.0 to 7.0.1

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, github_actions

#375 - chore(deps): Bump golang.org/x/text from 0.17.0 to 0.18.0

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago
Labels: dependencies, go

#375 - chore(deps): Bump golang.org/x/text from 0.17.0 to 0.18.0

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago
Labels: dependencies, go

#374 - chore(deps): Bump peter-evans/create-pull-request from 6.1.0 to 7.0.0

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, github_actions

#374 - chore(deps): Bump peter-evans/create-pull-request from 6.1.0 to 7.0.0

Pull Request - State: closed - Opened by dependabot[bot] 3 months ago - 1 comment
Labels: dependencies, github_actions

#373 - Chore use click invoke yardstick

Pull Request - State: closed - Opened by willmurphyscode 3 months ago
Labels: changelog-ignore

#373 - Chore use click invoke yardstick

Pull Request - State: closed - Opened by willmurphyscode 3 months ago
Labels: changelog-ignore