-
Notifications
You must be signed in to change notification settings - Fork 253
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
renovate/38.18.13 package update #25606
Conversation
octo-sts
bot
commented
Aug 5, 2024
Signed-off-by: wolfi-bot <[email protected]>
Package renovate: Click to expand/collapsePackage renovate:
(
"""
# Generated by melange
pkgname = renovate
- pkgver = 38.18.12-r0
+ pkgver = 38.18.13-r0
arch = x86_64
- size = 245846438
+ size = 245861273
origin = renovate
pkgdesc = Automated dependency updates. Multi-platform and multi-language.
url =
- commit = fb2c9c48e8a3e53344b56ad8100a592b553fd7d6
- builddate = 1722714513
+ commit = 113a12b5c23024c2c064bbf6edaae3e582c57609
license = AGPL-3.0-only
depend = git
... // 4 identical lines
depend = so:libstdc++.so.6
# vendored = so:better_sqlite3.node=0
- datahash = 615fc90bed2b90baf61e52c9f8e168220d59c9e7e84744bf5f8a128bdb2aba1f
+ datahash = 54ba13e14b72c91fcf11784aece453a272d54e6de10d028dc396c96c9a00aa47
"""
)
Added: /usr/local/lib/node_modules/renovate/node_modules/core-js-pure/actual/promise/try.js bincapz found differences: Click to expand/collapsetime=2024-08-05T09:56:45.288Z level=ERROR source=github.com/chainguard-dev/bincapz/pkg/action/scan.go:199 msg="unable to process /tmp/wolfictl-apk-2940530536/renovate/usr/local/lib/node_modules/renovate/node_modules/tar-fs/test/fixtures/invalid.tar: extract to temp: failed to extract /tmp/wolfictl-apk-2940530536/renovate/usr/local/lib/node_modules/renovate/node_modules/tar-fs/test/fixtures/invalid.tar: failed to create directory for file: mkdir /tmp/invalid.tar1881631625/foo: not a directory" Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/full/typed-array/set-from-hex.js [✅ LOW → ✅ ]1 removed behaviors
Moved: renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/global.js -> /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment-is-ios.js (similarity: 0.90) [✅ LOW → ✅ ]1 removed behaviors
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/actual/regexp/escape.js [
|
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-MEDIUM | net/download | download files | downloadLocation |
-LOW | ref/site/url | contains embedded HTTPS URLs | https://spdx.org/spdxdocs/chainguard/melange/abffbf9fd3c1b0ff6c3115cb5a0f |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/actual/typed-array/set-from-hex.js [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment-user-agent.js [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment-is-ios-pebble.js [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/actual/typed-array/set-from-base64.js [✅ → ✅ LOW]
1 new behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
+LOW | encoding/base64 | Supports base64 encoded strings | base64 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/full/typed-array/set-from-base64.js [✅ → ✅ LOW]
1 new behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
+LOW | encoding/base64 | Supports base64 encoded strings | base64 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment-is-webos-webkit.js [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Changed: /tmp/wolfictl-apk-907558748/renovate/var/lib/db/sbom/renovate-38.18.13-r0.spdx.json [✅ → ⚠️ MEDIUM]
2 new behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
+MEDIUM | net/download | download files | downloadLocation |
+LOW | ref/site/url | contains embedded HTTPS URLs | https://spdx.org/spdxdocs/chainguard/melange/f38e9ba8fbbaac887dfbc1621011 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/features/typed-array/set-from-base64.js [✅ → ✅ LOW]
1 new behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
+LOW | encoding/base64 | Supports base64 encoded strings | base64 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/modules/esnext.uint8-array.set-from-base64.js [⚠️ MEDIUM → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-MEDIUM | kernel/platform | get system identification | process.versions |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment.js [⚠️ MEDIUM → ✅ ]
2 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-MEDIUM | net/download | download files | downloadLocation |
-LOW | ref/site/url | contains embedded HTTPS URLs | https://spdx.org/spdxdocs/chainguard/melange/abffbf9fd3c1b0ff6c3115cb5a0f |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/modules/esnext.uint8-array.set-from-hex.js [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Moved: renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/global.js -> /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/uint8-from-hex.js (similarity: 0.92) [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/features/typed-array/set-from-hex.js [⚠️ MEDIUM → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-MEDIUM | kernel/platform | get system identification | process.versions |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/get-built-in-node-module.js [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment-is-node.js [⚠️ MEDIUM → ✅ ]
2 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-MEDIUM | net/download | download files | downloadLocation |
-LOW | ref/site/url | contains embedded HTTPS URLs | https://spdx.org/spdxdocs/chainguard/melange/abffbf9fd3c1b0ff6c3115cb5a0f |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment-ff-version.js [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment-webkit-version.js [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Moved: renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/engine-is-ios-pebble.js -> /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/uint8-from-base64.js (similarity: 0.91) [✅ → ✅ LOW]
2 new behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
+LOW | encoding/base64 | Supports base64 encoded strings | base64 |
+LOW | evasion/bitwise_math | uses bitwise math | triplet >> 16 triplet >> 8 |
Moved: renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/engine-is-bun.js -> /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment-v8-version.js (similarity: 0.92) [✅ → ⚠️ MEDIUM]
1 new behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
+MEDIUM | kernel/platform | get system identification | process.versions |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/actual/promise/try.js [⚠️ MEDIUM → ✅ ]
2 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-MEDIUM | net/download | download files | downloadLocation |
-LOW | ref/site/url | contains embedded HTTPS URLs | https://spdx.org/spdxdocs/chainguard/melange/abffbf9fd3c1b0ff6c3115cb5a0f |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/environment-is-ie-or-edge.js [✅ LOW → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Moved: renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/engine-is-bun.js -> /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/global-this.js (similarity: 0.93) [✅ → ✅ LOW]
1 new behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
+LOW | ref/site/url | contains embedded HTTPS URLs | zloirock/core-js#86 |
Changed: /tmp/wolfictl-apk-907558748/renovate/usr/local/lib/node_modules/renovate/node_modules/core-js-pure/internals/array-buffer-not-detached.js [⚠️ MEDIUM → ✅ ]
1 removed behaviors
RISK | KEY | DESCRIPTION | EVIDENCE |
---|---|---|---|
-MEDIUM | kernel/platform | get system identification | process.versions |