Skip to content

Commit b0184aa

Browse files
osv-robotgithub-actions[bot]
authored andcommitted
test: update snapshots and cassettes
1 parent c82c9c9 commit b0184aa

20 files changed

+11326
-13648
lines changed

cmd/osv-scanner/scan/image/__snapshots__/command_test.snap

Lines changed: 22 additions & 16 deletions
Original file line numberDiff line numberDiff line change
@@ -592,8 +592,8 @@ You can also view the full vulnerability list in your terminal with: `osv-scanne
592592
Scanning local image tarball "./testdata/test-python-full.tar"
593593
594594
Container Scanning Result (Debian GNU/Linux 10 (buster)):
595-
Total 19 packages affected by 44 known vulnerabilities (1 Critical, 14 High, 14 Medium, 0 Low, 15 Unknown) from 2 ecosystems.
596-
44 vulnerabilities can be fixed.
595+
Total 19 packages affected by 46 known vulnerabilities (1 Critical, 16 High, 14 Medium, 0 Low, 15 Unknown) from 2 ecosystems.
596+
46 vulnerabilities can be fixed.
597597
598598
599599
PyPI
@@ -658,7 +658,7 @@ PyPI
658658
+---------+-------------------+---------------+------------+------------------+---------------+
659659
| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
660660
+---------+-------------------+---------------+------------+------------------+---------------+
661-
| urllib3 | 1.24.3 | Fix Available | 6 | # 17 Layer | -- |
661+
| urllib3 | 1.24.3 | Fix Available | 8 | # 17 Layer | -- |
662662
+---------+-------------------+---------------+------------+------------------+---------------+
663663
Debian:10
664664
+-----------------------------------------------------------------------------------------------------------------------------------------------+
@@ -691,8 +691,8 @@ You can also view the full vulnerability list in your terminal with: `osv-scanne
691691
Scanning local image tarball "./testdata/test-package-tracing.tar"
692692
693693
Container Scanning Result (Alpine Linux v3.20):
694-
Total 9 packages affected by 143 known vulnerabilities (1 Critical, 3 High, 5 Medium, 2 Low, 132 Unknown) from 2 ecosystems.
695-
143 vulnerabilities can be fixed.
694+
Total 9 packages affected by 155 known vulnerabilities (1 Critical, 3 High, 5 Medium, 2 Low, 144 Unknown) from 2 ecosystems.
695+
155 vulnerabilities can be fixed.
696696
697697
698698
Go
@@ -701,42 +701,42 @@ Go
701701
+---------+-------------------+---------------+------------+------------------+---------------+
702702
| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
703703
+---------+-------------------+---------------+------------+------------------+---------------+
704-
| stdlib | 1.22.4 | Fix Available | 22 | # 9 Layer | -- |
704+
| stdlib | 1.22.4 | Fix Available | 24 | # 9 Layer | -- |
705705
+---------+-------------------+---------------+------------+------------------+---------------+
706706
+---------------------------------------------------------------------------------------------+
707707
| Source:artifact:/go/bin/ptf-1.2.0 |
708708
+---------+-------------------+---------------+------------+------------------+---------------+
709709
| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
710710
+---------+-------------------+---------------+------------+------------------+---------------+
711-
| stdlib | 1.22.4 | Fix Available | 22 | # 2 Layer | -- |
711+
| stdlib | 1.22.4 | Fix Available | 24 | # 2 Layer | -- |
712712
+---------+-------------------+---------------+------------+------------------+---------------+
713713
+---------------------------------------------------------------------------------------------+
714714
| Source:artifact:/go/bin/ptf-1.3.0 |
715715
+---------+-------------------+---------------+------------+------------------+---------------+
716716
| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
717717
+---------+-------------------+---------------+------------+------------------+---------------+
718-
| stdlib | 1.22.4 | Fix Available | 22 | # 4 Layer | -- |
718+
| stdlib | 1.22.4 | Fix Available | 24 | # 4 Layer | -- |
719719
+---------+-------------------+---------------+------------+------------------+---------------+
720720
+---------------------------------------------------------------------------------------------+
721721
| Source:artifact:/go/bin/ptf-1.3.0-moved |
722722
+---------+-------------------+---------------+------------+------------------+---------------+
723723
| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
724724
+---------+-------------------+---------------+------------+------------------+---------------+
725-
| stdlib | 1.22.4 | Fix Available | 22 | # 3 Layer | -- |
725+
| stdlib | 1.22.4 | Fix Available | 24 | # 3 Layer | -- |
726726
+---------+-------------------+---------------+------------+------------------+---------------+
727727
+---------------------------------------------------------------------------------------------+
728728
| Source:artifact:/go/bin/ptf-1.4.0 |
729729
+---------+-------------------+---------------+------------+------------------+---------------+
730730
| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
731731
+---------+-------------------+---------------+------------+------------------+---------------+
732-
| stdlib | 1.22.4 | Fix Available | 22 | # 2 Layer | -- |
732+
| stdlib | 1.22.4 | Fix Available | 24 | # 2 Layer | -- |
733733
+---------+-------------------+---------------+------------+------------------+---------------+
734734
+---------------------------------------------------------------------------------------------+
735735
| Source:artifact:/go/bin/ptf-vulnerable |
736736
+---------+-------------------+---------------+------------+------------------+---------------+
737737
| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
738738
+---------+-------------------+---------------+------------+------------------+---------------+
739-
| stdlib | 1.22.4 | Fix Available | 22 | # 7 Layer | -- |
739+
| stdlib | 1.22.4 | Fix Available | 24 | # 7 Layer | -- |
740740
+---------+-------------------+---------------+------------+------------------+---------------+
741741
Alpine:v3.20
742742
+------------------------------------------------------------------------------------------------------------------------------+
@@ -1255,14 +1255,16 @@ You can also view the full vulnerability list in your terminal with: `osv-scanne
12551255
"index": 17
12561256
}
12571257
},
1258-
"groups": 6,
1258+
"groups": 8,
12591259
"vulnerabilities": [
12601260
"PYSEC-2020-148",
12611261
"PYSEC-2021-108",
12621262
"PYSEC-2023-192",
12631263
"PYSEC-2023-212",
1264+
"GHSA-2xpw-w6gg-jr37",
12641265
"GHSA-34jh-p97f-mpxf",
12651266
"GHSA-g4mx-q9vg-27p4",
1267+
"GHSA-gm62-xv2j-4w53",
12661268
"GHSA-pq67-6m6q-mj2v",
12671269
"GHSA-v845-jxx5-vc9f",
12681270
"GHSA-wqvq-5m8c-6g24"
@@ -1938,7 +1940,7 @@ Scanning local image tarball "./testdata/test-image-with-deprecated.tar"
19381940
"index": 2
19391941
}
19401942
},
1941-
"groups": 22,
1943+
"groups": 24,
19421944
"vulnerabilities": [
19431945
"GO-2024-2963",
19441946
"GO-2024-3105",
@@ -1961,7 +1963,9 @@ Scanning local image tarball "./testdata/test-image-with-deprecated.tar"
19611963
"GO-2025-4012",
19621964
"GO-2025-4013",
19631965
"GO-2025-4014",
1964-
"GO-2025-4015"
1966+
"GO-2025-4015",
1967+
"GO-2025-4155",
1968+
"GO-2025-4175"
19651969
]
19661970
},
19671971
{
@@ -3486,7 +3490,7 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
34863490
"index": 7
34873491
}
34883492
},
3489-
"groups": 74,
3493+
"groups": 76,
34903494
"vulnerabilities": [
34913495
"GO-2022-0477",
34923496
"GO-2022-0493",
@@ -3561,7 +3565,9 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
35613565
"GO-2025-4012",
35623566
"GO-2025-4013",
35633567
"GO-2025-4014",
3564-
"GO-2025-4015"
3568+
"GO-2025-4015",
3569+
"GO-2025-4155",
3570+
"GO-2025-4175"
35653571
]
35663572
}
35673573
]

cmd/osv-scanner/scan/image/testdata/cassettes/TestCommand_Docker.yaml

Lines changed: 66 additions & 66 deletions
Original file line numberDiff line numberDiff line change
@@ -12,109 +12,109 @@ interactions:
1212
{
1313
"queries": [
1414
{
15+
"version": "3.4.3-r1",
1516
"package": {
16-
"ecosystem": "Alpine:v3.18",
17-
"name": "alpine-baselayout"
18-
},
19-
"version": "3.4.3-r1"
17+
"name": "alpine-baselayout",
18+
"ecosystem": "Alpine:v3.18"
19+
}
2020
},
2121
{
22+
"version": "3.4.3-r1",
2223
"package": {
23-
"ecosystem": "Alpine:v3.18",
24-
"name": "alpine-baselayout"
25-
},
26-
"version": "3.4.3-r1"
24+
"name": "alpine-baselayout",
25+
"ecosystem": "Alpine:v3.18"
26+
}
2727
},
2828
{
29+
"version": "2.4-r1",
2930
"package": {
30-
"ecosystem": "Alpine:v3.18",
31-
"name": "alpine-keys"
32-
},
33-
"version": "2.4-r1"
31+
"name": "alpine-keys",
32+
"ecosystem": "Alpine:v3.18"
33+
}
3434
},
3535
{
36+
"version": "2.14.4-r0",
3637
"package": {
37-
"ecosystem": "Alpine:v3.18",
38-
"name": "apk-tools"
39-
},
40-
"version": "2.14.4-r0"
38+
"name": "apk-tools",
39+
"ecosystem": "Alpine:v3.18"
40+
}
4141
},
4242
{
43+
"version": "1.36.1-r7",
4344
"package": {
44-
"ecosystem": "Alpine:v3.18",
45-
"name": "busybox"
46-
},
47-
"version": "1.36.1-r7"
45+
"name": "busybox",
46+
"ecosystem": "Alpine:v3.18"
47+
}
4848
},
4949
{
50+
"version": "1.36.1-r7",
5051
"package": {
51-
"ecosystem": "Alpine:v3.18",
52-
"name": "busybox"
53-
},
54-
"version": "1.36.1-r7"
52+
"name": "busybox",
53+
"ecosystem": "Alpine:v3.18"
54+
}
5555
},
5656
{
57+
"version": "20240226-r0",
5758
"package": {
58-
"ecosystem": "Alpine:v3.18",
59-
"name": "ca-certificates"
60-
},
61-
"version": "20240226-r0"
59+
"name": "ca-certificates",
60+
"ecosystem": "Alpine:v3.18"
61+
}
6262
},
6363
{
64+
"version": "0.7.2-r5",
6465
"package": {
65-
"ecosystem": "Alpine:v3.18",
66-
"name": "libc-dev"
67-
},
68-
"version": "0.7.2-r5"
66+
"name": "libc-dev",
67+
"ecosystem": "Alpine:v3.18"
68+
}
6969
},
7070
{
71+
"version": "3.1.7-r0",
7172
"package": {
72-
"ecosystem": "Alpine:v3.18",
73-
"name": "openssl"
74-
},
75-
"version": "3.1.7-r0"
73+
"name": "openssl",
74+
"ecosystem": "Alpine:v3.18"
75+
}
7676
},
7777
{
78+
"version": "3.1.7-r0",
7879
"package": {
79-
"ecosystem": "Alpine:v3.18",
80-
"name": "openssl"
81-
},
82-
"version": "3.1.7-r0"
80+
"name": "openssl",
81+
"ecosystem": "Alpine:v3.18"
82+
}
8383
},
8484
{
85+
"version": "1.2.4-r2",
8586
"package": {
86-
"ecosystem": "Alpine:v3.18",
87-
"name": "musl"
88-
},
89-
"version": "1.2.4-r2"
87+
"name": "musl",
88+
"ecosystem": "Alpine:v3.18"
89+
}
9090
},
9191
{
92+
"version": "1.2.4-r2",
9293
"package": {
93-
"ecosystem": "Alpine:v3.18",
94-
"name": "musl"
95-
},
96-
"version": "1.2.4-r2"
94+
"name": "musl",
95+
"ecosystem": "Alpine:v3.18"
96+
}
9797
},
9898
{
99+
"version": "1.3.7-r1",
99100
"package": {
100-
"ecosystem": "Alpine:v3.18",
101-
"name": "pax-utils"
102-
},
103-
"version": "1.3.7-r1"
101+
"name": "pax-utils",
102+
"ecosystem": "Alpine:v3.18"
103+
}
104104
},
105105
{
106+
"version": "1.36.1-r7",
106107
"package": {
107-
"ecosystem": "Alpine:v3.18",
108-
"name": "busybox"
109-
},
110-
"version": "1.36.1-r7"
108+
"name": "busybox",
109+
"ecosystem": "Alpine:v3.18"
110+
}
111111
},
112112
{
113+
"version": "1.2.13-r1",
113114
"package": {
114-
"ecosystem": "Alpine:v3.18",
115-
"name": "zlib"
116-
},
117-
"version": "1.2.13-r1"
115+
"name": "zlib",
116+
"ecosystem": "Alpine:v3.18"
117+
}
118118
}
119119
]
120120
}
@@ -145,39 +145,39 @@ interactions:
145145
"vulns": [
146146
{
147147
"id": "ALPINE-CVE-2024-13176",
148-
"modified": "2025-11-19T06:11:21.935709Z"
148+
"modified": "2025-12-03T22:55:07.817006Z"
149149
},
150150
{
151151
"id": "ALPINE-CVE-2024-9143",
152-
"modified": "2025-11-19T06:21:15.538783Z"
152+
"modified": "2025-12-03T22:57:50.413061Z"
153153
}
154154
]
155155
},
156156
{
157157
"vulns": [
158158
{
159159
"id": "ALPINE-CVE-2024-13176",
160-
"modified": "2025-11-19T06:11:21.935709Z"
160+
"modified": "2025-12-03T22:55:07.817006Z"
161161
},
162162
{
163163
"id": "ALPINE-CVE-2024-9143",
164-
"modified": "2025-11-19T06:21:15.538783Z"
164+
"modified": "2025-12-03T22:57:50.413061Z"
165165
}
166166
]
167167
},
168168
{
169169
"vulns": [
170170
{
171171
"id": "ALPINE-CVE-2025-26519",
172-
"modified": "2025-11-19T06:21:21.194626Z"
172+
"modified": "2025-12-03T22:58:36.705692Z"
173173
}
174174
]
175175
},
176176
{
177177
"vulns": [
178178
{
179179
"id": "ALPINE-CVE-2025-26519",
180-
"modified": "2025-11-19T06:21:21.194626Z"
180+
"modified": "2025-12-03T22:58:36.705692Z"
181181
}
182182
]
183183
},

0 commit comments

Comments
 (0)