Skip to content
This repository was archived by the owner on May 9, 2025. It is now read-only.

Conversation

@morri-son
Copy link
Contributor

Description

Please include a summary of the changes and the related issue. Please also include relevant motivation and context. List any dependencies that are required for this change.

What type of PR is this? (check all applicable)

  • 🍕 Feature
  • 🐛 Bug Fix
  • 📝 Documentation Update
  • 🎨 Style
  • 🧑‍💻 Code Refactor
  • 🔥 Performance Improvements
  • ✅ Test
  • 🤖 Build
  • 🔁 CI
  • 📦 Chore (Release)
  • ⏩ Revert

Related Tickets & Documents

  • Related Issue # (issue)
  • Closes # (issue)
  • Fixes # (issue)

Remove if not applicable

Screenshots

Added tests?

  • 👍 yes
  • 🙅 no, because they aren't needed
  • 🙋 no, because I need help
  • Separate ticket for tests # (issue/pr)

Please describe the tests that you ran to verify your changes. Provide instructions so we can reproduce. Please also list any relevant details for your test configuration

Added to documentation?

  • 📜 README.md
  • 🙅 no documentation needed

Checklist:

  • My code follows the style guidelines of this project
  • I have performed a self-review of my code
  • I have commented my code, particularly in hard-to-understand areas
  • I have made corresponding changes to the documentation
  • My changes generate no new warnings
  • I have added tests that prove my fix is effective or that my feature works
  • New and existing unit tests pass locally with my changes
  • Any dependent changes have been merged and published in downstream modules

@morri-son morri-son requested a review from Skarlso October 17, 2023 08:08
@github-actions
Copy link

❌ Black Duck - Found dependencies violating policy!

Policies Violated Dependency License(s) Vulnerabilities Short Term Recommended Upgrade Long Term Recommended Upgrade
OutdatedFOSSLibraries golang-github-docker-go-connections-dev 0.4.0 Apache License 2.0
OutdatedFOSSLibraries github.com/alibabacloud-go/darabonba-openapi v0.1.18 Apache License 2.0 v0.2.1 (0 known vulnerabilities) v2.0.4 (0 known vulnerabilities)
OutdatedFOSSLibraries go-autorest autorest/date/v0.3.0 Apache License 2.0 autorest/v0.11.29 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries sigs.k8s.io/yaml v1.3.0 Apache License 2.0
OutdatedFOSSLibraries go-inf-inf v0.9.1 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries jmespath-go-jmespath v0.4.0 Apache License 2.0 internal/testify/v1.5.1 (0 known vulnerabilities)
OutdatedFOSSLibraries docker-go-units v0.5.0 Apache License 2.0
OutdatedFOSSLibraries mitchellh-go-homedir v1.1.0 MIT License 1.1.0-r0 (0 known vulnerabilities) 1.1.0-r0 (0 known vulnerabilities)
OutdatedFOSSLibraries valyala/bytebufferpool v1.0.0 MIT License
OutdatedFOSSLibraries miekg/pkcs11 v1.1.1 BSD 3-clause "New" or "Revised" License 4.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries pkg/errors v0.9.1 BSD 2-clause "Simplified" License v0.11.0 (0 known vulnerabilities) 4.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries emirpasic-gods v1.18.1 ISC License
BSD 2-clause "Simplified" License
5.4.2 (0 known vulnerabilities)
OutdatedFOSSLibraries go-errors-errors v1.4.2 MIT License v1.5.1 (0 known vulnerabilities) v1.5.1 (0 known vulnerabilities)
OutdatedFOSSLibraries diskv v2.0.1 MIT License v3.0.1 (0 known vulnerabilities)
OutdatedFOSSLibraries opentracing-opentracing-go v1.2.0 Apache License 2.0 v4 (0 known vulnerabilities)
OutdatedFOSSLibraries github.com/munnerz/goautoneg 20191010-snapshot-a7dc8b61 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries google-go-querystring v1.1.0 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries evanphx/json-patch v5.6.0 BSD 3-clause "New" or "Revised" License v5.7.0 (0 known vulnerabilities) v5.7.0 (0 known vulnerabilities)
OutdatedFOSSLibraries gregjones/httpcache 20190611-snapshot-901d9072 MIT License 0.0.0-20190611155906-901d90724c79 (0 known vulnerabilities)
OutdatedFOSSLibraries go-ansiterm d185dfc1b5a126116ea5a19e148e29d16b4574c9 MIT License 0 (0 known vulnerabilities)
OutdatedFOSSLibraries gorilla/mux v1.8.0 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries hashicorp-go-cleanhttp v0.5.2 Mozilla Public License 2.0
OutdatedFOSSLibraries mailru/easyjson v0.7.7 MIT License
OutdatedFOSSLibraries yaml for Go v2.4.0 Apache License 2.0 v3.0.1 (0 known vulnerabilities)
OutdatedFOSSLibraries pborman-uuid v1.2.1 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries xeipuuv/gojsonschema v1.2.0 Apache License 2.0 master20161231 (0 known vulnerabilities)
OutdatedFOSSLibraries go-jose v2.6.0 Apache License 2.0
OutdatedFOSSLibraries alibabacloud-go/tea-utils v1.4.4 Apache License 2.0 v1.4.5 (0 known vulnerabilities) v2.0.4 (0 known vulnerabilities)
OutdatedFOSSLibraries fluxcd/pkg apis/acl/v0.1.0 Apache License 2.0 git/libgit2/v0.6.0 (0 known vulnerabilities) git/libgit2/v0.6.0 (0 known vulnerabilities)
OutdatedFOSSLibraries go-spew v1.1.1 ISC License
OutdatedFOSSLibraries moby/sys sequential/v0.5.0 Apache License 2.0 signal/v0.7.0 (0 known vulnerabilities) signal/v0.7.0 (0 known vulnerabilities)
OutdatedFOSSLibraries modern-go/reflect2 v1.0.2 Apache License 2.0 V2.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries mitchellh-hashstructure v2.0.2 MIT License
OutdatedFOSSLibraries golang-github-spf13-pflag-dev v1.0.5 BSD 3-clause "New" or "Revised" License 1.0.6~git20210604-d5e0c0615ace (0 known vulnerabilities) 1.0.6~git20210604-d5e0c0615ace (0 known vulnerabilities)
OutdatedFOSSLibraries nozzle-throttler 20180816-snapshot-2ea98225 Apache License 2.0 v1.1 (0 known vulnerabilities)
OutdatedFOSSLibraries blang-semver 3.5.1 MIT License v3.8.0 (0 known vulnerabilities) 4.0.0-r0 (0 known vulnerabilities)
OutdatedFOSSLibraries go-chi v4.1.2 MIT License v4.1.3 (0 known vulnerabilities) v5.0.10 (0 known vulnerabilities)
OutdatedFOSSLibraries go-autorest logger/v0.2.1 Apache License 2.0 autorest/v0.11.29 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries jedisct1/go-minisign 20211028-snapshot-1c139d1c MIT License 0.2.4 (0 known vulnerabilities)
OutdatedFOSSLibraries xeipuuv-gojsonpointer 20190904-snapshot-02993c40 Apache License 2.0 0.0~git20190905.02993c4 (0 known vulnerabilities)
OutdatedFOSSLibraries btree v1.1.2 Apache License 2.0
OutdatedFOSSLibraries github.com/alibabacloud-go/openapi-util v0.0.11 Apache License 2.0 v0.1.0 (0 known vulnerabilities) v0.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries jsoniter-go v1.1.12 MIT License 1.16.0 (0 known vulnerabilities) 1.16.0 (0 known vulnerabilities)
OutdatedFOSSLibraries gogo/protobuf v1.3.2 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries go-jose/go-jose v3.0.0 Apache License 2.0
OutdatedFOSSLibraries mitchellh-hashstructure v1.1.0 MIT License v2.0.2 (0 known vulnerabilities)
OutdatedFOSSLibraries google/gnostic v0.6.9 Apache License 2.0 v0.7.0 (0 known vulnerabilities) v0.7.0 (0 known vulnerabilities)
OutdatedFOSSLibraries github.com/moby/locker 1.0.1 Apache License 2.0
OutdatedFOSSLibraries go-logr/stdr v1.2.2 Apache License 2.0
OutdatedFOSSLibraries notary v0.7.0 Apache License 2.0 docker-v1.11-3 (0 known vulnerabilities)
OutdatedFOSSLibraries zeebo/errs v1.3.0 MIT License v2.0.4 (0 known vulnerabilities)
OutdatedFOSSLibraries xeipuuv-gojsonreference 20180127-snapshot-bd5ef7bd Apache License 2.0 0.0~git20150808.0.e02fc20 (0 known vulnerabilities)
OutdatedFOSSLibraries aws/aws-sdk-go-v2 service/ecrpublic/v1.12.0 Apache License 2.0 service/route53/v1.30.1 (0 known vulnerabilities) 20230724 (0 known vulnerabilities)
OutdatedFOSSLibraries docker-go 20160303-snapshot-d30aec9f BSD 3-clause "New" or "Revised" License v1.5.1-1 (0 known vulnerabilities)
OutdatedFOSSLibraries containers/ocicrypt v1.1.6 Apache License 2.0 v1.1.8 (0 known vulnerabilities) v1.1.8 (0 known vulnerabilities)
OutdatedFOSSLibraries pmezard-go-difflib 1.0.0 BSD 3-clause "New" or "Revised" License v1.0.0+gitX-r0 (0 known vulnerabilities) v1.0.0+gitX-r0 (0 known vulnerabilities)
OutdatedFOSSLibraries groupcache 20210331-snapshot-41bb18bf Apache License 2.0 1.56.1 (0 known vulnerabilities)
OutdatedFOSSLibraries containers/storage v1.43.0 Apache License 2.0 v1.50.2 (0 known vulnerabilities) v1.50.2 (0 known vulnerabilities)
OutdatedFOSSLibraries filippo.io/edwards25519 v1.0.0 BSD 3-clause "New" or "Revised" License
OutdatedFOSSLibraries yaml for Go v3.0.1 Apache License 2.0
MIT License
OutdatedFOSSLibraries github.com/alibabacloud-go/tea-xml v1.1.2 Apache License 2.0 v1.1.3 (0 known vulnerabilities) v1.1.3 (0 known vulnerabilities)
OutdatedFOSSLibraries dimchansky/utfbom v1.1.1 Apache License 2.0
OutdatedFOSSLibraries containers/image v5.23.0 Apache License 2.0 v5.28.0 (0 known vulnerabilities) v5.28.0 (0 known vulnerabilities)
OutdatedFOSSLibraries containers/libtrust 20200511-snapshot-9c3a6c22 Apache License 2.0 0.0~git20230121.c1716e8 (0 known vulnerabilities)
OutdatedFOSSLibraries go-toml v1.9.5 MIT License v2.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries segmentio/ksuid v1.0.4 MIT License
OutdatedFOSSLibraries go-openapi/errors v0.20.3 Apache License 2.0 v0.20.4 (0 known vulnerabilities) v0.20.4 (0 known vulnerabilities)
OutdatedFOSSLibraries aliyun/credentials-go v1.2.3 Apache License 2.0 v1.3.1 (0 known vulnerabilities) v1.3.1 (0 known vulnerabilities)
OutdatedFOSSLibraries kustomize api/v0.12.1 Apache License 2.0 pseudo/k8s/v0.1.0 (0 known vulnerabilities) pseudo/k8s/v0.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries google-shlex 20191202-snapshot-e7afc7fb Apache License 2.0 0.0~git20191202.e7afc7f (0 known vulnerabilities)
OutdatedFOSSLibraries go-autorest tracing/v0.6.0 Apache License 2.0 autorest/v0.11.29 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries titanous/rocacheck 20180511-snapshot-afe73141 MIT License
OutdatedFOSSLibraries alibabacloud-go/cr-20160607 v1.0.1 Apache License 2.0 v2.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries morikuni/aec v1.0.0 MIT License
OutdatedFOSSLibraries go-github v45.2.0 BSD 3-clause "New" or "Revised" License v56.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries sassoftware/relic v7.2.1 Apache License 2.0 v7.6.1 (0 known vulnerabilities) v7.6.1 (0 known vulnerabilities)
OutdatedFOSSLibraries docker-org v0.7.0 MIT License pre-0.16+2093 (0 known vulnerabilities) 2016-08-12 (0 known vulnerabilities)
OutdatedFOSSLibraries marstr/guid v1.1.0 MIT License
OutdatedFOSSLibraries alibabacloud-go/tea v1.1.18 Apache License 2.0 v1.2.1 (0 known vulnerabilities) v1.2.1 (0 known vulnerabilities)
OutdatedFOSSLibraries josharian/intern v1.0.0 MIT License
OutdatedFOSSLibraries github.com/google/go-containerregistry v0.15.2 Apache License 2.0 v0.16.1 (0 known vulnerabilities) v0.16.1 (0 known vulnerabilities)
OutdatedFOSSLibraries tjfoc/gmsm v1.3.2 Apache License 2.0 v1.4.1 (0 known vulnerabilities) v2.0.0 (0 known vulnerabilities)
[IP Scan] SAP Hosted Cloud - Rapid Scan
OutdatedFOSSLibraries
docker/go-metrics v0.0.1 ❌   Creative Commons Attribution Share Alike 4.0
Apache License 2.0
OutdatedFOSSLibraries hashicorp/hcl v1.0.0 Mozilla Public License 2.0 v1.0.1-vault-5 (0 known vulnerabilities) v2.18.1 (0 known vulnerabilities)
OutdatedFOSSLibraries klauspost-pgzip v1.2.5 Expat License v1.2.6 (0 known vulnerabilities) v����.2.0 (0 known vulnerabilities)
OutdatedFOSSLibraries mitchellh-reflectwalk v1.0.2 MIT License
OutdatedFOSSLibraries oklog/ulid v1.3.1 Apache License 2.0 v2.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries mitchellh-copystructure v1.2.0 MIT License
OutdatedFOSSLibraries alibabacloud-go/debug 20190504-snapshot-9472017b Apache License 2.0 v1.0.0 (0 known vulnerabilities)
OutdatedFOSSLibraries go-autorest autorest/azure/cli/v0.4.6 Apache License 2.0 autorest/v0.11.29 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries kevinburke/ssh_config v1.2.0 X.Net License
MIT License
v5.2.1-release (0 known vulnerabilities)
OutdatedFOSSLibraries alibabacloud-go/cr-20181201 v1.0.10 Unknown License v2.2.0 (0 known vulnerabilities)
OutdatedFOSSLibraries google-gofuzz v1.2.0 Apache License 2.0
OutdatedFOSSLibraries golang-github-ghodss-yaml-dev 1.0.0 MIT License 1.0.0+git20220118.d8423dc (0 known vulnerabilities) v2 (0 known vulnerabilities)
OutdatedFOSSLibraries monochromegane/go-gitignore 20200625-snapshot-205db1a8 MIT License 0 (0 known vulnerabilities)
OutdatedFOSSLibraries skratchdot-open-golang 20200116-snapshot-eef84239 MIT License 0.0~git20160302.0.75fb7ed (0 known vulnerabilities)
OutdatedFOSSLibraries kustomize kyaml/v0.13.9 Apache License 2.0 pseudo/k8s/v0.1.0 (0 known vulnerabilities) pseudo/k8s/v0.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries go-autorest v14.2.0 Apache License 2.0 14.2.0+git20220726.711dde1 (0 known vulnerabilities) 14.2.0+git20220726.711dde1 (0 known vulnerabilities)
OutdatedFOSSLibraries google/go-cmp v0.5.9 BSD 3-clause "New" or "Revised" License v0.6.0 (0 known vulnerabilities) 1.30.0 (0 known vulnerabilities)
OutdatedFOSSLibraries liggitt/tabwriter 20181228-snapshot-89fcab3d BSD 3-clause "New" or "Revised" License 0 (0 known vulnerabilities)
OutdatedFOSSLibraries github.com/spf13/jwalterweatherman v1.1.0 MIT License V2.2.1 (0 known vulnerabilities)
OutdatedFOSSLibraries Golang Protobuf v1.5.3 BSD 3-clause "New" or "Revised" License v1.31.0 (0 known vulnerabilities) v1.31.0 (0 known vulnerabilities)
OutdatedFOSSLibraries mapstructure v1.5.0 MIT License
OutdatedFOSSLibraries modern-go/concurrent 20180305-snapshot-bacd9c7e Apache License 2.0 V2.1.0 (0 known vulnerabilities)
OutdatedFOSSLibraries evanphx/json-patch v5.6.0 BSD 3-clause "New" or "Revised" License v5.7.0 (0 known vulnerabilities) v5.7.0 (0 known vulnerabilities)
OutdatedFOSSLibraries mxj v2.5.6 BSD 3-clause "New" or "Revised" License
MIT License
v2.7.0 (0 known vulnerabilities) v2.7.0 (0 known vulnerabilities)

@Skarlso Skarlso merged commit 35cef71 into main Oct 17, 2023
@hilmarf hilmarf deleted the add-blackduck-scans branch November 29, 2024 11:27
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants