Skip to content

Commit 8c661d2

Browse files
authored
[NPM] Update client-go vulnerabilities and add Trivy to CI (#872)
1 parent e84e301 commit 8c661d2

File tree

484 files changed

+61509
-22890
lines changed

Some content is hidden

Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.

484 files changed

+61509
-22890
lines changed

.pipelines/pipeline.yaml

Lines changed: 10 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -104,6 +104,16 @@ stages:
104104
name: "BuildImages"
105105
displayName: "Build Images"
106106
107+
- script: |
108+
wget https://github.com/aquasecurity/trivy/releases/download/v0.18.1/trivy_0.18.1_Linux-64bit.tar.gz
109+
tar -zxvf trivy*.tar.gz
110+
mkdir -p ./trivy-cache
111+
sudo ./trivy --exit-code 1 --cache-dir ./trivy-cache --severity HIGH,CRITICAL $IMAGE_REGISTRY/azure-npm:$(TAG)
112+
sudo ./trivy --exit-code 1 --cache-dir ./trivy-cache --severity HIGH,CRITICAL $IMAGE_REGISTRY/azure-cns:$(TAG)
113+
sudo ./trivy --exit-code 1 --cache-dir ./trivy-cache --severity HIGH,CRITICAL $IMAGE_REGISTRY/azure-cni-manager:$(TAG)
114+
name: "TrivyScan"
115+
displayName: "Image Vulnerability Scan"
116+
107117
- task: Docker@2
108118
displayName: Docker Login
109119
inputs:

go.mod

Lines changed: 10 additions & 6 deletions
Original file line numberDiff line numberDiff line change
@@ -29,16 +29,20 @@ require (
2929
github.com/spf13/viper v1.3.2
3030
github.com/stretchr/testify v1.7.0
3131
go.opencensus.io v0.22.2 // indirect
32-
golang.org/x/net v0.0.0-20191112182307-2180aed22343 // indirect
33-
golang.org/x/sys v0.0.0-20200828161417-c663848e9a16
32+
golang.org/x/crypto v0.0.0-20210513164829-c07d793c2f9a // indirect
33+
golang.org/x/net v0.0.0-20210510120150-4163338589ed // indirect
34+
golang.org/x/sys v0.0.0-20210514084401-e8d321eab015
35+
golang.org/x/term v0.0.0-20210503060354-a79de5458b56 // indirect
36+
golang.org/x/text v0.3.6 // indirect
3437
golang.org/x/time v0.0.0-20191024005414-555d28b269f0 // indirect
38+
golang.org/x/tools v0.1.1 // indirect
3539
google.golang.org/appengine v1.6.5 // indirect
36-
google.golang.org/genproto v0.0.0-20200526211855-cb27e3aa2013
40+
google.golang.org/genproto v0.0.0-20200526211855-cb27e3aa2013 // indirect
3741
google.golang.org/grpc v1.27.0
3842
google.golang.org/protobuf v1.25.0
39-
k8s.io/api v0.18.2
40-
k8s.io/apimachinery v0.18.2
41-
k8s.io/client-go v0.18.2
43+
k8s.io/api v0.18.19
44+
k8s.io/apimachinery v0.18.19
45+
k8s.io/client-go v0.18.19
4246
k8s.io/klog v1.0.0
4347
k8s.io/utils v0.0.0-20200324210504-a9aa75ae1b89
4448
sigs.k8s.io/controller-runtime v0.6.0

go.sum

Lines changed: 193 additions & 0 deletions
Large diffs are not rendered by default.

vendor/github.com/evanphx/json-patch/.travis.yml

Lines changed: 5 additions & 2 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

vendor/github.com/evanphx/json-patch/LICENSE

Lines changed: 1 addition & 1 deletion
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

vendor/github.com/evanphx/json-patch/README.md

Lines changed: 6 additions & 5 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

vendor/github.com/evanphx/json-patch/merge.go

Lines changed: 8 additions & 5 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

vendor/github.com/evanphx/json-patch/patch.go

Lines changed: 18 additions & 10 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

vendor/github.com/gogo/protobuf/proto/text_parser.go

Lines changed: 1 addition & 1 deletion
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

vendor/github.com/stretchr/testify/require/doc.go

Lines changed: 28 additions & 0 deletions
Some generated files are not rendered by default. Learn more about customizing how changed files appear on GitHub.

0 commit comments

Comments
 (0)