Skip to content

Commit

Permalink
chore: Update dependency securego/gosec to v2.22.0 (#534)
Browse files Browse the repository at this point in the history
This PR contains the following updates:

| Package | Update | Change |
|---|---|---|
| [securego/gosec](https://redirect.github.com/securego/gosec) | minor |
`v2.20.0` -> `v2.22.0` |

---

### Release Notes

<details>
<summary>securego/gosec (securego/gosec)</summary>

###
[`v2.22.0`](https://redirect.github.com/securego/gosec/releases/tag/v2.22.0)

[Compare
Source](https://redirect.github.com/securego/gosec/compare/v2.21.4...v2.22.0)

#### Changelog

-
[`e0cca6f`](https://redirect.github.com/securego/gosec/commit/e0cca6fe95306b7e7790d6f1bf6a7bec6d622459)
Update what message for G104
([#&#8203;1282](https://redirect.github.com/securego/gosec/issues/1282))
-
[`534689b`](https://redirect.github.com/securego/gosec/commit/534689b08f588e88a89ffe20eddfdc28c6eeb86e)
chore(deps): update module github.com/onsi/ginkgo/v2 to v2.22.2
([#&#8203;1281](https://redirect.github.com/securego/gosec/issues/1281))
-
[`eb95db1`](https://redirect.github.com/securego/gosec/commit/eb95db1c7689fe5191547206ea06ed422e49eb89)
chore(deps): update all dependencies
([#&#8203;1280](https://redirect.github.com/securego/gosec/issues/1280))
-
[`6c6da40`](https://redirect.github.com/securego/gosec/commit/6c6da403f0d52380bb13ea8245eee31f02b952c2)
chore(deps): update all dependencies
([#&#8203;1279](https://redirect.github.com/securego/gosec/issues/1279))
-
[`b12f51f`](https://redirect.github.com/securego/gosec/commit/b12f51f7d688ab7f51c543813efbb984d466adab)
Simplify sortIssues implementation
([#&#8203;1277](https://redirect.github.com/securego/gosec/issues/1277))
-
[`54c2185`](https://redirect.github.com/securego/gosec/commit/54c2185ae643b8df64395652c6e4abbbe9ef1ebc)
Enable testifylint and fix up lint issues
([#&#8203;1276](https://redirect.github.com/securego/gosec/issues/1276))
-
[`36c81ed`](https://redirect.github.com/securego/gosec/commit/36c81ed69b2279f562bbd511a3bdec49ee488816)
Refactor AppendError to check for build.NoGoError
([#&#8203;1273](https://redirect.github.com/securego/gosec/issues/1273))
-
[`9a2d74f`](https://redirect.github.com/securego/gosec/commit/9a2d74ffe0740284dfc13d5b2101eeaa4a64f48d)
chore(deps): update module golang.org/x/net to v0.33.0 \[security]
([#&#8203;1275](https://redirect.github.com/securego/gosec/issues/1275))
-
[`4c5ad91`](https://redirect.github.com/securego/gosec/commit/4c5ad914f3005ad3a45841bd14e5ab7edfc17846)
Update README.md
([#&#8203;1274](https://redirect.github.com/securego/gosec/issues/1274))
-
[`e21b4d4`](https://redirect.github.com/securego/gosec/commit/e21b4d42cf52504b3ab4384ddaa640e75bc9aac0)
Rule documentation updates
([#&#8203;1272](https://redirect.github.com/securego/gosec/issues/1272))
-
[`92de0ee`](https://redirect.github.com/securego/gosec/commit/92de0ee7a2bef8688cdef8744c1e408064eb7683)
Replace old golang.org links with new go.dev
([#&#8203;1271](https://redirect.github.com/securego/gosec/issues/1271))
-
[`4fda076`](https://redirect.github.com/securego/gosec/commit/4fda076e5d8dabc819b30b73f34a50f5ffe19a0f)
Refactor AppendError to use strings.Contains
([#&#8203;1270](https://redirect.github.com/securego/gosec/issues/1270))
-
[`b01f49e`](https://redirect.github.com/securego/gosec/commit/b01f49e3668456e9ec552b6ddc5ff3a41511a071)
Simplify Analyzer.ignore by reducing nesting
([#&#8203;1269](https://redirect.github.com/securego/gosec/issues/1269))
-
[`b62cc33`](https://redirect.github.com/securego/gosec/commit/b62cc3316d652d3b15d5b76538cf26c968baba87)
Improve capitalization in AI API flags descriptions
([#&#8203;1267](https://redirect.github.com/securego/gosec/issues/1267))
-
[`bc77d16`](https://redirect.github.com/securego/gosec/commit/bc77d16301725b9d97bd3f4a7b216d83e3c30c64)
Remove unused golint dependency
([#&#8203;1266](https://redirect.github.com/securego/gosec/issues/1266))
-
[`ef1a35f`](https://redirect.github.com/securego/gosec/commit/ef1a35faf9f24e25ff6ccb977083ad56456cbc01)
Simplify tests by using GinkgoT().TempDir()
([#&#8203;1265](https://redirect.github.com/securego/gosec/issues/1265))
-
[`09b9143`](https://redirect.github.com/securego/gosec/commit/09b914371ececcf6e010f570551ec311c7848e12)
Documentation on adding new rules and analyzers
([#&#8203;1262](https://redirect.github.com/securego/gosec/issues/1262))
-
[`1bd92a8`](https://redirect.github.com/securego/gosec/commit/1bd92a8e30a87a62cff3d792365f7e983c3c9291)
chore(deps): update all dependencies
([#&#8203;1268](https://redirect.github.com/securego/gosec/issues/1268))
-
[`ca55eca`](https://redirect.github.com/securego/gosec/commit/ca55eca3def12baad606a310b13b35168debde4f)
Update to go 1.22.10 and 1.23.4 versions
([#&#8203;1264](https://redirect.github.com/securego/gosec/issues/1264))
-
[`329cad8`](https://redirect.github.com/securego/gosec/commit/329cad89ee05f29dc8ce797823a10960e558cf03)
chore(deps): update module golang.org/x/crypto to v0.31.0 \[security]
([#&#8203;1263](https://redirect.github.com/securego/gosec/issues/1263))
-
[`08beb25`](https://redirect.github.com/securego/gosec/commit/08beb25d41bef7c8a9ecab2df84dddf4d486ed17)
chore(deps): update all dependencies
([#&#8203;1261](https://redirect.github.com/securego/gosec/issues/1261))
-
[`d566be2`](https://redirect.github.com/securego/gosec/commit/d566be274ef93dea133cb063f1dba82c7476a5a9)
chore(deps): update module github.com/onsi/gomega to v1.36.0
([#&#8203;1259](https://redirect.github.com/securego/gosec/issues/1259))
-
[`8c602d0`](https://redirect.github.com/securego/gosec/commit/8c602d0bc45e4a76d2a6079cfa0fa5a88a381ebe)
fix: revive.redefines-builtin-id lint warnings
([#&#8203;1257](https://redirect.github.com/securego/gosec/issues/1257))
-
[`399e835`](https://redirect.github.com/securego/gosec/commit/399e835157aa69a09b4a8d1c14f9afcc203621ae)
Fix typos in comments and fields
-
[`229cf63`](https://redirect.github.com/securego/gosec/commit/229cf63a09e595e1ddbff532ee64e9826822912f)
Remove the decryption funtions/methods from G407 check
-
[`699cb55`](https://redirect.github.com/securego/gosec/commit/699cb55eb33630404307a1f99d73cd3ea4181135)
Upate go to version 1.23.3 and 1.22.9
-
[`9b13cd5`](https://redirect.github.com/securego/gosec/commit/9b13cd5ab4766d62429eaadb27a5d662db123222)
Fix G115 false positive when going from parsed uint to larger int
-
[`08ea2a5`](https://redirect.github.com/securego/gosec/commit/08ea2a57db99b9758f1aa4982fadfa5778b672f4)
chore(deps): update all dependencies
-
[`4415613`](https://redirect.github.com/securego/gosec/commit/44156135bfd39b347ec01d2d69b27e50b26f2344)
chore(deps): update all dependencies
-
[`3274716`](https://redirect.github.com/securego/gosec/commit/3274716ce3ce24652ee4476152be9324817f2d91)
chore(deps): update all dependencies
-
[`1fb6a46`](https://redirect.github.com/securego/gosec/commit/1fb6a46eed71931cdac97753cf64c0f1dd73122f)
chore(deps): update all dependencies
-
[`d2c92ed`](https://redirect.github.com/securego/gosec/commit/d2c92ed7b3bb812e0d8d9295c3034588cc779edf)
chore(deps): update all dependencies
-
[`4fd9872`](https://redirect.github.com/securego/gosec/commit/4fd98728a74b56a1381ec494624c42ae53d2515c)
Update go version to 1.23.2 and 1.22.8
-
[`1501618`](https://redirect.github.com/securego/gosec/commit/1501618b90fccbe51cb283a4b21496a0ba86c311)
chore(deps): update module google.golang.org/api to v0.201.0
-
[`7d33bc1`](https://redirect.github.com/securego/gosec/commit/7d33bc1991ba1c97d8ebce9b0d1231acffbbf6ed)
chore(deps): update all dependencies
-
[`bd8b4b4`](https://redirect.github.com/securego/gosec/commit/bd8b4b4ece209d24dfc86bb15c708182b091a4de)
chore(deps): update all dependencies
-
[`1216c9b`](https://redirect.github.com/securego/gosec/commit/1216c9b96b9c5beaa43590ad7b3c689352266567)
Fix the cosign step to authenticate with the container registry
-
[`50d1b4a`](https://redirect.github.com/securego/gosec/commit/50d1b4ae6b4970ef1446f4671a22ea1d30ea99b8)
chore(deps): update module google.golang.org/api to v0.199.0
-
[`c0ba7c7`](https://redirect.github.com/securego/gosec/commit/c0ba7c7a74f811c56b33b5905b0524e34acbbf0f)
Update the gosec to v2.21.4 in the Github action
-
[`a3299ce`](https://redirect.github.com/securego/gosec/commit/a3299ce10ca6f800a292567bdd5e89cbb04babce)
Add the version into goreleaser config

###
[`v2.21.4`](https://redirect.github.com/securego/gosec/releases/tag/v2.21.4)

[Compare
Source](https://redirect.github.com/securego/gosec/compare/v2.21.3...v2.21.4)

#### Changelog

-
[`d4617f5`](https://redirect.github.com/securego/gosec/commit/d4617f51baf75f4f809066386a4f9d27b3ac3e46)
chore(deps): update module google.golang.org/api to v0.198.0
([#&#8203;1233](https://redirect.github.com/securego/gosec/issues/1233))
-
[`1d23143`](https://redirect.github.com/securego/gosec/commit/1d23143bee7e7e4862d955def8f8bb389fd8b456)
Prevent panic: unexpected constant value: <nil>
([#&#8203;1232](https://redirect.github.com/securego/gosec/issues/1232))
-
[`6741874`](https://redirect.github.com/securego/gosec/commit/6741874d9bc3feeba24ddb5fd353455a0da3b301)
Fix running single analyzer which isn't a rule bug
([#&#8203;1231](https://redirect.github.com/securego/gosec/issues/1231))
-
[`a836898`](https://redirect.github.com/securego/gosec/commit/a83689867d8e15cac0f94c1b55979c45df8f69d6)
Update gosec version to v2.21.3 in github action
([#&#8203;1227](https://redirect.github.com/securego/gosec/issues/1227))

###
[`v2.21.3`](https://redirect.github.com/securego/gosec/releases/tag/v2.21.3)

[Compare
Source](https://redirect.github.com/securego/gosec/compare/v2.21.2...v2.21.3)

#### Changelog

-
[`be8bd6e`](https://redirect.github.com/securego/gosec/commit/be8bd6e40be105333f2bc783ba8d688154441559)
Populate the fixes only when autofix is not empty
([#&#8203;1226](https://redirect.github.com/securego/gosec/issues/1226))
-
[`3004932`](https://redirect.github.com/securego/gosec/commit/30049320058a3d116f9f0d3a98c7fdf3fedc20af)
chore(deps): update all dependencies
([#&#8203;1223](https://redirect.github.com/securego/gosec/issues/1223))
-
[`1f3bdd9`](https://redirect.github.com/securego/gosec/commit/1f3bdd93493b70e06e508b51ea7ad757e8f2f21e)
G115 Struct Attribute Checks
([#&#8203;1221](https://redirect.github.com/securego/gosec/issues/1221))
-
[`5f3194b`](https://redirect.github.com/securego/gosec/commit/5f3194b581979e508b0ba1ee22f1f1f85a314e16)
Update the github action to v2.21.2
([#&#8203;1218](https://redirect.github.com/securego/gosec/issues/1218))

###
[`v2.21.2`](https://redirect.github.com/securego/gosec/releases/tag/v2.21.2)

[Compare
Source](https://redirect.github.com/securego/gosec/compare/v2.21.1...v2.21.2)

#### Changelog

-
[`abfe8cf`](https://redirect.github.com/securego/gosec/commit/abfe8cfd6d5687c96abf31f8e7f57982df2a6e4f)
Update the SARIF schema URL
([#&#8203;1217](https://redirect.github.com/securego/gosec/issues/1217))
-
[`0396179`](https://redirect.github.com/securego/gosec/commit/0396179112d5e2071365e5ecb2a75d77e90852f8)
Update go version to 1.23.1 and 1.22.7
([#&#8203;1216](https://redirect.github.com/securego/gosec/issues/1216))
-
[`5e53c8b`](https://redirect.github.com/securego/gosec/commit/5e53c8b9f7f77380e95960e6095392f49977e63d)
chore(deps): update all dependencies
([#&#8203;1215](https://redirect.github.com/securego/gosec/issues/1215))
-
[`014751c`](https://redirect.github.com/securego/gosec/commit/014751c91c04fe3fe05e381dea9faadbd4ce8e78)
Update gosec version to v2.21.1 in github action
([#&#8203;1213](https://redirect.github.com/securego/gosec/issues/1213))

###
[`v2.21.1`](https://redirect.github.com/securego/gosec/releases/tag/v2.21.1)

[Compare
Source](https://redirect.github.com/securego/gosec/compare/v2.21.0...v2.21.1)

#### Changelog

-
[`0ce4453`](https://redirect.github.com/securego/gosec/commit/0ce4453ddd8cca1291d2056cf903b545baad95a0)
Rollback the SARIF version to 2.1 since github doesn't support 2.2
([#&#8203;1210](https://redirect.github.com/securego/gosec/issues/1210))
-
[`ea26e84`](https://redirect.github.com/securego/gosec/commit/ea26e8431f53a5d229b1c07ffe3529008a01c25e)
Update gosec in github action to v2.21.0
([#&#8203;1208](https://redirect.github.com/securego/gosec/issues/1208))

###
[`v2.21.0`](https://redirect.github.com/securego/gosec/releases/tag/v2.21.0)

[Compare
Source](https://redirect.github.com/securego/gosec/compare/v2.20.0...v2.21.0)

#### Changelog

-
[`b278b40`](https://redirect.github.com/securego/gosec/commit/b278b40c5266eb2b52f41c57d9e6509d9360a2a6)
Update cosign version to v2.4.0 in release github workflow
([#&#8203;1207](https://redirect.github.com/securego/gosec/issues/1207))
-
[`eaedce9`](https://redirect.github.com/securego/gosec/commit/eaedce9a8b64ce207e25553232bcc7541e0044e7)
Improvement the int conversion overflow logic to handle bound checks
([#&#8203;1194](https://redirect.github.com/securego/gosec/issues/1194))
-
[`ea5b276`](https://redirect.github.com/securego/gosec/commit/ea5b2766bb1abd38e13375c0e2d789f8ab2b789c)
fix: G602 support for nested conditionals with bounds check
([#&#8203;1201](https://redirect.github.com/securego/gosec/issues/1201))
-
[`11d6903`](https://redirect.github.com/securego/gosec/commit/11d69032b0856c96afd4c493967ab7a30e20ff5e)
Update go.mod to sue go 1.22.0 toolchain
-
[`655527d`](https://redirect.github.com/securego/gosec/commit/655527dfb4df16091cbdc0a10bd89c2d5d9312a5)
chore(deps): update all dependencies
-
[`0898560`](https://redirect.github.com/securego/gosec/commit/08985601695d7b6eb13330521c80859adc9d72aa)
Make variable name more clear
-
[`ac67231`](https://redirect.github.com/securego/gosec/commit/ac67231ec5a73f1525942d5ef482d1152e61ac3f)
Make variable names more explicity and reduce duplications
-
[`e0414c4`](https://redirect.github.com/securego/gosec/commit/e0414c46402de6813677e1868b6c0f82270fdb80)
Fix formatting
-
[`c7003fc`](https://redirect.github.com/securego/gosec/commit/c7003fc7e5e7f05783097793d4410d50896e06d4)
Refactor to reduce some fuctions and variable names
-
[`2401936`](https://redirect.github.com/securego/gosec/commit/2401936458ea4c80b8c83a3500d9354ca3914605)
Pass the value argument directly since is an interface
-
[`f5d3128`](https://redirect.github.com/securego/gosec/commit/f5d312825f753d7c598fcd5e80e2c9c6f9cb1776)
Added suggested changes
-
[`a14ca4a`](https://redirect.github.com/securego/gosec/commit/a14ca4ac59d9b519d1b195afe6098ff13d574d32)
Added another test case in order to increase code coverage
-
[`a6dd589`](https://redirect.github.com/securego/gosec/commit/a6dd589bae11a5eb18408a4a75e63e46833a01a3)
Removed function parameter which is always the same
-
[`b4c7469`](https://redirect.github.com/securego/gosec/commit/b4c746962f33c83ec64ce337e546bd0cc6529cd1)
Formatting problems(CI was not passing)
-
[`7f8f654`](https://redirect.github.com/securego/gosec/commit/7f8f654235b42704bab6c65c3459a2824bccadd3)
Updated analyzer to use new way of initialization
-
[`a26215c`](https://redirect.github.com/securego/gosec/commit/a26215cf23be85d473f6d5a1e059a02406ea5d55)
Migrated the rule to the analyzers folder
-
[`3f6e1e7`](https://redirect.github.com/securego/gosec/commit/3f6e1e7326fe7849aaaaf35698907a1a7c504997)
Refractored code a little bit
-
[`0eb8143`](https://redirect.github.com/securego/gosec/commit/0eb8143c23b649a345370fd169baff6525c34bd9)
Added new rule G407(hardcoded IV/nonce)
-
[`4ae73c8`](https://redirect.github.com/securego/gosec/commit/4ae73c8ba3a6b38e3c1bafad75f59cb4910e389f)
Fix conversion overflow false positive when using ParseUint
-
[`c52dc0e`](https://redirect.github.com/securego/gosec/commit/c52dc0ea4e0fed5898f6b1d1f1028bd20ac0fa86)
Add a build step to measure the scan perfomance
-
[`bcec04e`](https://redirect.github.com/securego/gosec/commit/bcec04e784830d45797201cb889246bf266cd941)
Fix conversion overflow false positives when they are checked or
pre-determined
-
[`71e397b`](https://redirect.github.com/securego/gosec/commit/71e397b9944c50b3f8f9e0e3e1904047c7b3967e)
Update go.mod
-
[`aec45b0`](https://redirect.github.com/securego/gosec/commit/aec45b0b7dd15c03d89d67e16b93f41df8ece85b)
chore(deps): update all dependencies
-
[`ab3f6c1`](https://redirect.github.com/securego/gosec/commit/ab3f6c1c83a0c80fcb8c95838de10cc3cf0d8ba2)
Fix false positive in conversion overflow check from uint8/int8 type
-
[`a39ec5a`](https://redirect.github.com/securego/gosec/commit/a39ec5a16bca81f2442050ce3d2d442911ace4cc)
Disable staticcheck SA1019 rule
-
[`a1b2ab8`](https://redirect.github.com/securego/gosec/commit/a1b2ab80af682c279271a7d3e3cf939e0e5c2847)
Update the golangci linters
-
[`8467f01`](https://redirect.github.com/securego/gosec/commit/8467f012e0d6238433e299fd0499ee29342000c3)
Add more test to cover more use cases for G115 rule
-
[`81cda2f`](https://redirect.github.com/securego/gosec/commit/81cda2f91fbe1bf4735feb55febcae03e697a92b)
Allow excluding analyzers globally
([#&#8203;1180](https://redirect.github.com/securego/gosec/issues/1180))
-
[`18135b4`](https://redirect.github.com/securego/gosec/commit/18135b439cbafc52ac712528099193a0d6b18a33)
Update to Go 1.23.0
([#&#8203;1183](https://redirect.github.com/securego/gosec/issues/1183))
-
[`91c708a`](https://redirect.github.com/securego/gosec/commit/91c708a62031dd4b92ae057c8835b975bf80c134)
chore(deps): update all dependencies
([#&#8203;1182](https://redirect.github.com/securego/gosec/issues/1182))
-
[`92bac42`](https://redirect.github.com/securego/gosec/commit/92bac42afce8fee2756fb7d7f491328bd069ebec)
Read the AI API key also from an environment variable
([#&#8203;1181](https://redirect.github.com/securego/gosec/issues/1181))
-
[`56f943b`](https://redirect.github.com/securego/gosec/commit/56f943b802579b69d96f0999a7943c588e600ae7)
Add support to generate auto fixes using LLM (AI)
([#&#8203;1177](https://redirect.github.com/securego/gosec/issues/1177))
-
[`f33fd4b`](https://redirect.github.com/securego/gosec/commit/f33fd4bf29722188b24b4a55b512d12adcd8b216)
chore(deps): update all dependencies
-
[`55a47f3`](https://redirect.github.com/securego/gosec/commit/55a47f37740ea50048d4396051e2a60c794bec1d)
chore(deps): update all dependencies
-
[`a5d9ef6`](https://redirect.github.com/securego/gosec/commit/a5d9ef67e2c945ab409da174596ee8be564633fe)
chore(deps): update all dependencies
-
[`6842444`](https://redirect.github.com/securego/gosec/commit/68424445af83e15ed94b4d9b26ee00089d2a87d6)
chore(deps): update dependency babel-standalone to v7.24.10
-
[`08b94f9`](https://redirect.github.com/securego/gosec/commit/08b94f9392935d370dfa208af1c526477865cdf6)
Resolve underlying type to detect overflows in type aliases
-
[`4487a0c`](https://redirect.github.com/securego/gosec/commit/4487a0c5a233e90ed46450fee36bad20cf9dcebe)
chore(deps): update dependency babel-standalone to v7.24.8
-
[`0076267`](https://redirect.github.com/securego/gosec/commit/007626773c6c47884c59b02f49f91de8ba168917)
Fix multifile ignores
-
[`2f1b81b`](https://redirect.github.com/securego/gosec/commit/2f1b81b8894fa2d69a6257d4c968a8f17d7e7fd4)
Add -enable-audit cli flag
-
[`87fcb9b`](https://redirect.github.com/securego/gosec/commit/87fcb9b95baf7ce007b5db1dd92405351dca6dcc)
Update to go 1.22.5 and 1.21.12
-
[`466992f`](https://redirect.github.com/securego/gosec/commit/466992feca6e21a9a8f9bbcf69f65914ffacfcfe)
chore(deps): update all dependencies
-
[`9a4a741`](https://redirect.github.com/securego/gosec/commit/9a4a741e6b3757a6063bbb52e1d139b193a33398)
Added more rules
-
[`6382394`](https://redirect.github.com/securego/gosec/commit/6382394ce8fe66c4b3b5051891254792004e95ff)
Fixed coverage workflow
-
[`5666ea3`](https://redirect.github.com/securego/gosec/commit/5666ea35bafdcdbf6550f4b118ce5d0504447782)
Fixed CI workflow
-
[`fc0957f`](https://redirect.github.com/securego/gosec/commit/fc0957f6a3b0d1c0db43ea72266daab41143c4d9)
Minor changes
-
[`58e4fcc`](https://redirect.github.com/securego/gosec/commit/58e4fccc1382194f682ee8f97860f5b9c7aa491a)
Split the G401 rule into two separate ones
-
[`2e71f37`](https://redirect.github.com/securego/gosec/commit/2e71f37efda759fa68989fa3ece93623ff762945)
Updated G401 corresponding CWE
-
[`3edc633`](https://redirect.github.com/securego/gosec/commit/3edc633c241a32da17c6b2fcbb092192a583ee4e)
chore(deps): update docker/build-push-action action to v6
-
[`2ae137a`](https://redirect.github.com/securego/gosec/commit/2ae137abcf405533ad6e549e9363e58e4f6e8b7d)
Update to go versions to 1.21.11 and 1.22.4
-
[`30a8a9c`](https://redirect.github.com/securego/gosec/commit/30a8a9c8c303c881a56c7bc0fb1c06e237779d49)
chore(deps): update all dependencies
-
[`ac75d44`](https://redirect.github.com/securego/gosec/commit/ac75d44f5635e83e6e91347f7350f1b3c87ee5af)
Fix nosec when applied to a block
-
[`ed3f51e`](https://redirect.github.com/securego/gosec/commit/ed3f51e66358b0b4beea512a4edabc6116e972ff)
Add more types to templates rule
-
[`c3209fc`](https://redirect.github.com/securego/gosec/commit/c3209fcaac0b14cc2dcb057dcebb60fa35e274e2)
Map the G115 rule to an CWE ID
-
[`45fbb27`](https://redirect.github.com/securego/gosec/commit/45fbb27d87864c1cf2f9c71896ab1660eab47a91)
chore(deps): update all dependencies
-
[`43bef71`](https://redirect.github.com/securego/gosec/commit/43bef719b47ff8de56265f54dc0d0a9c4afe13c9)
Update README with G115 rule description
-
[`555fe44`](https://redirect.github.com/securego/gosec/commit/555fe448dd8931e33a6d8cb3a534d8190938fa61)
Remove deprecated megacheck linter from golangci
-
[`81b076f`](https://redirect.github.com/securego/gosec/commit/81b076f53d65314e4c73473c012e7ce94bed11aa)
Format imports
-
[`f775eb1`](https://redirect.github.com/securego/gosec/commit/f775eb19c51d9b80b53eeca466007516a2d8b5f0)
Update .gitignore
-
[`4bf5667`](https://redirect.github.com/securego/gosec/commit/4bf5667f6673c43d356235086ecfe41f5bb5ca7b)
Add a new rule to detect integer overflow on integer types conversion
-
[`5f0084e`](https://redirect.github.com/securego/gosec/commit/5f0084eb01a99a1ef3718afcb2f4078e8d07326f)
feat: add env var to override the Go version detection
-
[`75dd9d6`](https://redirect.github.com/securego/gosec/commit/75dd9d61ff96be391e3410fee384c87fdf7566d5)
Use the proper logic when disabling the go module version
-
[`1e1fc91`](https://redirect.github.com/securego/gosec/commit/1e1fc91d158706e3bca507a749c72070c361aade)
Update the README with some details related to Go version used by the
rules
-
[`9a03665`](https://redirect.github.com/securego/gosec/commit/9a036658b7b1eab8f226171e72319ec2e9e84176)
Add an environment varialbe which disables the parsing of Go version
from module file
-
[`b633c4c`](https://redirect.github.com/securego/gosec/commit/b633c4c0ec489dfc2f4930bb96237371058cb199)
chore(deps): update module github.com/onsi/ginkgo/v2 to v2.17.3
-
[`40f29c8`](https://redirect.github.com/securego/gosec/commit/40f29c8d4abf59af475a79f6aa0268c296319501)
Update docker image in action to v2.20.0

</details>

---

### Configuration

📅 **Schedule**: Branch creation - "* 0-4,22-23 * * 1-5,* * * * 0,6"
(UTC), Automerge - At any time (no schedule defined).

🚦 **Automerge**: Enabled.

♻ **Rebasing**: Whenever PR becomes conflicted, or you tick the
rebase/retry checkbox.

🔕 **Ignore**: Close this PR and you won't be reminded about this update
again.

---

- [ ] <!-- rebase-check -->If you want to rebase/retry this PR, check
this box

---

This PR was generated by [Mend Renovate](https://mend.io/renovate/).
View the [repository job
log](https://developer.mend.io/github/nobl9/nobl9-go).

<!--renovate-debug:eyJjcmVhdGVkSW5WZXIiOiIzOC41OS4yIiwidXBkYXRlZEluVmVyIjoiMzkuOTIuMCIsInRhcmdldEJyYW5jaCI6Im1haW4iLCJsYWJlbHMiOlsiZGVwZW5kZW5jaWVzIiwicmVub3ZhdGUiXX0=-->

---------

Co-authored-by: renovate[bot] <29139614+renovate[bot]@users.noreply.github.com>
Co-authored-by: Mateusz Hawrus <[email protected]>
Co-authored-by: Mateusz Hawrus <[email protected]>
  • Loading branch information
3 people authored Jan 16, 2025
1 parent ffd777d commit 080ef03
Show file tree
Hide file tree
Showing 2 changed files with 2 additions and 2 deletions.
2 changes: 1 addition & 1 deletion Makefile
Original file line number Diff line number Diff line change
Expand Up @@ -6,7 +6,7 @@ BIN_DIR := ./bin
# renovate datasource=github-releases depName=abice/go-enum
GO_ENUM_VERSION := v0.6.0
# renovate datasource=github-releases depName=securego/gosec
GOSEC_VERSION := v2.20.0
GOSEC_VERSION := v2.22.0
# renovate datasource=github-releases depName=golangci/golangci-lint
GOLANGCI_LINT_VERSION := v1.60.1
# renovate datasource=go depName=golang.org/x/vuln/cmd/govulncheck
Expand Down
2 changes: 1 addition & 1 deletion manifest/v1alpha/slo/time_window.go
Original file line number Diff line number Diff line change
Expand Up @@ -127,7 +127,7 @@ func rollingWindowSizeValidation(timeWindow TimeWindow) error {
func calendarWindowSizeValidation(timeWindow TimeWindow) error {
tw, err := twindow.NewCalendarTimeWindow(
twindow.MustParseTimeUnit(timeWindow.Unit),
uint32(timeWindow.Count),
uint32(timeWindow.Count), // #nosec G115
time.UTC,
time.Now().UTC(),
)
Expand Down

0 comments on commit 080ef03

Please sign in to comment.