Skip to content

fix(deps): update trivy (9.5) - #7834

Merged
elastic-renovate-prod[bot] merged 2 commits into
9.5from
renovate/9.5-trivy
Aug 19, 2026
Merged

fix(deps): update trivy (9.5)#7834
elastic-renovate-prod[bot] merged 2 commits into
9.5from
renovate/9.5-trivy

Conversation

@elastic-renovate-prod

@elastic-renovate-prod elastic-renovate-prod Bot commented Aug 11, 2026

Copy link
Copy Markdown
Contributor

This PR contains the following updates:

Package Change Age Confidence Type Update
github.com/aquasecurity/trivy v0.71.1v0.74.0 age confidence require minor
github.com/aquasecurity/trivy-db 11b0c9f0e0340a age confidence require digest

Warning

Some dependencies could not be looked up. Check the Dependency Dashboard for more information.


Configuration

📅 Schedule: Branch creation - Between 01:00 AM and 01:59 AM, Monday through Friday ( * 1 * * 1-5 ) (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Enabled.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Renovate Bot.

@elastic-renovate-prod
elastic-renovate-prod Bot requested a review from a team as a code owner August 11, 2026 03:37
@elastic-renovate-prod elastic-renovate-prod Bot added backport-skip dependencies Pull requests that update a dependency file renovate renovate-auto-approve Team:Security-Cloud Services Security Data Experience - Cloud Services team. labels Aug 11, 2026
@elastic-renovate-prod
elastic-renovate-prod Bot enabled auto-merge (squash) August 11, 2026 03:37
@mergify

mergify Bot commented Aug 11, 2026

Copy link
Copy Markdown
Contributor

This pull request is now in conflicts. Could you fix it? 🙏
To fixup this pull request, you can check out it locally. See documentation: https://help.github.com/articles/checking-out-pull-requests-locally/

git fetch upstream
git checkout -b renovate/9.5-trivy upstream/renovate/9.5-trivy
git merge upstream/9.5
git push upstream renovate/9.5-trivy

@mergify

mergify Bot commented Aug 13, 2026

Copy link
Copy Markdown
Contributor

This pull request is now in conflicts. Could you fix it? 🙏
To fixup this pull request, you can check out it locally. See documentation: https://help.github.com/articles/checking-out-pull-requests-locally/

git fetch upstream
git checkout -b renovate/9.5-trivy upstream/renovate/9.5-trivy
git merge upstream/9.5
git push upstream renovate/9.5-trivy

@elastic-renovate-prod
elastic-renovate-prod Bot force-pushed the renovate/9.5-trivy branch 2 times, most recently from fc44c97 to e3d0373 Compare August 13, 2026 01:11
@elastic-renovate-prod elastic-renovate-prod Bot changed the title fix(deps): update trivy (9.5) fix(deps): update module github.com/aquasecurity/trivy to v0.73.0 (9.5) Aug 13, 2026
@mergify

mergify Bot commented Aug 18, 2026

Copy link
Copy Markdown
Contributor

This pull request is now in conflicts. Could you fix it? 🙏
To fixup this pull request, you can check out it locally. See documentation: https://help.github.com/articles/checking-out-pull-requests-locally/

git fetch upstream
git checkout -b renovate/9.5-trivy upstream/renovate/9.5-trivy
git merge upstream/9.5
git push upstream renovate/9.5-trivy

@mergify

mergify Bot commented Aug 18, 2026

Copy link
Copy Markdown
Contributor

This pull request is now in conflicts. Could you fix it? 🙏
To fixup this pull request, you can check out it locally. See documentation: https://help.github.com/articles/checking-out-pull-requests-locally/

git fetch upstream
git checkout -b renovate/9.5-trivy upstream/renovate/9.5-trivy
git merge upstream/9.5
git push upstream renovate/9.5-trivy

Trivy-db 0e0340a marked types.Vulnerability.Severity deprecated in favor
of VendorSeverity. Trivy itself still resolves the effective severity
into DetectedVulnerability.Severity (see FillInfo in
pkg/vulnerability/vulnerability.go), so this is the correct field to
keep reading from during vulnerability event creation.
@elastic-renovate-prod
elastic-renovate-prod Bot added this pull request to the merge queue Aug 19, 2026
@mergify

mergify Bot commented Aug 19, 2026

Copy link
Copy Markdown
Contributor

Tick the box to add this pull request to the merge queue (same as @mergifyio queue).

  • Queue this pull request

Merged via the queue into 9.5 with commit 8135476 Aug 19, 2026
12 of 13 checks passed
@elastic-renovate-prod
elastic-renovate-prod Bot deleted the renovate/9.5-trivy branch August 19, 2026 16:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

backport-skip dependencies Pull requests that update a dependency file renovate renovate-auto-approve Team:Security-Cloud Services Security Data Experience - Cloud Services team.

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant