-
Notifications
You must be signed in to change notification settings - Fork 547
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Backport GHSA-vfp6-jrw2-99g9 #3364
Conversation
* Add limit to number of sigs and attestations Signed-off-by: AdamKorcz <[email protected]> * Update pkg/cosign/fetch.go Co-authored-by: Cody Soyland <[email protected]> Signed-off-by: AdamKorcz <[email protected]> * Update error message Signed-off-by: Hayden B <[email protected]> * fix compilation error Signed-off-by: Hayden Blauzvern <[email protected]> * Add e2e tests Signed-off-by: Hayden Blauzvern <[email protected]> --------- Signed-off-by: AdamKorcz <[email protected]> Signed-off-by: Hayden B <[email protected]> Signed-off-by: Hayden Blauzvern <[email protected]> Co-authored-by: Cody Soyland <[email protected]> Co-authored-by: Hayden B <[email protected]>
Signed-off-by: cpanato <[email protected]>
Codecov ReportAttention:
Additional details and impacted files@@ Coverage Diff @@
## release-1.13 #3364 +/- ##
================================================
- Coverage 30.16% 30.14% -0.03%
================================================
Files 136 136
Lines 8436 8443 +7
================================================
Hits 2545 2545
- Misses 5561 5568 +7
Partials 330 330 ☔ View full report in Codecov by Sentry. |
Signed-off-by: cpanato <[email protected]>
Signed-off-by: cpanato <[email protected]>
Signed-off-by: cpanato <[email protected]>
What should we do with the failing tests? |
I am not sure why we are seeing these errors. Do we need to update the tests to run on 1.13 ? |
not sure either :( |
scaffolding is pinned |
i will take a look on that tomorrow |
Signed-off-by: cpanato <[email protected]>
passing that one now :) |
Signed-off-by: cpanato <[email protected]>
I will merge and check the post submits and try to run a rehearsal before we do the official release |
No description provided.