Skip to content

Bump snyk from 1.730.0 to 1.974.0#209

Closed
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/npm_and_yarn/snyk-1.974.0
Closed

Bump snyk from 1.730.0 to 1.974.0#209
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/npm_and_yarn/snyk-1.974.0

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Jul 19, 2022

Bumps snyk from 1.730.0 to 1.974.0.

Release notes

Sourced from snyk's releases.

v1.974.0

1.974.0 (2022-07-18)

Features

  • add 'target-name' flag support (6305c3d)

v1.973.0

1.973.0 (2022-07-14)

Bug Fixes

Features

  • add --remote-repo-url to "iac test" (2a12048)
  • update general vuln descriptions to point to pvdb (ad80d74)
  • update spotlight vuln descriptions (f536c9d)

v1.972.0

1.972.0 (2022-07-13)

Bug Fixes

  • handle errors from /share-results (5871079)

Features

  • Add support for severity threshold (6833389)

v1.971.0

1.971.0 (2022-07-12)

Features

  • snyk-iac-test error handling (3b3fa89)

... (truncated)

Commits
  • 725d0f7 Merge pull request #3465 from snyk/feat/add-target-name-iac
  • 6305c3d feat: add 'target-name' flag support
  • 80eabae Merge pull request #3453 from snyk/feat/iac-test-add-remote-repo-url-flag
  • b278096 Merge pull request #3448 from snyk/feat/update_vuln_urls_to_pvdb
  • 2a12048 feat: add --remote-repo-url to "iac test"
  • 057c554 Merge pull request #3454 from snyk/fix/error-for-share-results
  • cf968fa Merge pull request #3424 from snyk/chore/error-handling-poc
  • 187f079 Merge pull request #3451 from snyk/feat/add-support-for-severity-threshold
  • 6833389 feat: Add support for severity threshold
  • 5871079 fix: handle errors from /share-results
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [snyk](https://github.com/snyk/snyk) from 1.730.0 to 1.974.0.
- [Release notes](https://github.com/snyk/snyk/releases)
- [Commits](snyk/cli@v1.730.0...v1.974.0)

---
updated-dependencies:
- dependency-name: snyk
  dependency-type: direct:production
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added the dependencies Pull requests that update a dependency file label Jul 19, 2022
@dependabot @github
Copy link
Author

dependabot bot commented on behalf of github Jul 20, 2022

Superseded by #210.

@dependabot dependabot bot closed this Jul 20, 2022
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/snyk-1.974.0 branch July 20, 2022 10:36
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants