Releases: ossf/osv-schema
Releases · ossf/osv-schema
v1.7.3
v1.7.2
Schema Changes
- feat: add Ubuntu LSN by @hogo6002 in #343
- Add GUIDING_PRINCIPLES.md by @oliverchang in #346
- Add MinimOS ecosystem by @bearjah in #351
- fix: missing MINI- prefix in schema for MimimOS by @jess-lowe in #353
- Add BellSoft Alpaquita and Hardened Containers ecosystems by @i-bs in #347
- add openEuler ecosystem by @kirigiricloud in #358
- Fix link by @progval in #360
New Contributors
- @jess-lowe made their first contribution in #345
- @JamieMagee made their first contribution in #232
- @bearjah made their first contribution in #351
- @i-bs made their first contribution in #347
- @kirigiricloud made their first contribution in #358
- @progval made their first contribution in #360
- @cuixq made their first contribution in #367
Full Changelog: v1.7.0...v1.7.2
v1.7.0
Main schema changes:
- Add
upstream
field. by @oliverchang in #312 - Help new readers quickly understand what OSV is. by @johnnymatthews in #329
- Add Kubernetes ecosystem by @knqyf263 in #319
- Add V8 prefix. by @vsutedjo in #339
- Add Ubuntu severity type to the schema and docs by @dodys in #337
New Contributors
- @G-Rath made their first contribution in #299
- @mjpitz made their first contribution in #326
- @litios made their first contribution in #327
- @johnnymatthews made their first contribution in #329
- @knqyf263 made their first contribution in #319
- @vsutedjo made their first contribution in #340
Full Changelog: v1.6.7...v1.7.0
v1.6.7
What's Changed
- refactor(osv-linter): tidy up human output by @andrewpollock in #269
- make redhat conversion tool downloadable with Pip by @jasinner in #278
- fix: add missing validation for Wolfi by @andrewpollock in #282
- Fix some minor formatting inconsistencies by @oliverchang in #283
- refactor(schema): simplify prefix validation regex by @andrewpollock in #280
- Prepare for release 1.6.7 by @oliverchang in #284
Full Changelog: v1.6.6...v1.6.7
v1.6.6
What's Changed
- Update charter to match official LF release. by @riaankleinhans in #268
- feat(osv-linter): support checking stdin by @andrewpollock in #267
- feat(suse): allow more SUSE- prefixes by @msmeissn in #270
- add RHBA and RHEA advisory prefixes sometimes used by Red Hat by @jasinner in #272
- feat(suse): add
SUSE-OU-
prefixes by @hogo6002 in #271 - Fix order of prefixes in docs/schema.md by @dodys in #275
- fix(schema): add missing Chainguard ecosystem/prefix by @andrewpollock in #276
- add Red Hat converter by @jasinner in #274
- adjust schema docs to have correct Red Hat IDs by @jasinner in #277
- Prepare for 1.6.6 release. by @oliverchang in #279
New Contributors
- @riaankleinhans made their first contribution in #268
- @hogo6002 made their first contribution in #271
Full Changelog: v1.6.5...v1.6.6
v1.6.5
v1.6.4
What's Changed
- add slack link to README by @hythloda in #236
- Add Mageia ecosystem by @dfandrich in #235
- Add support for last_affected in GHSA conversions to OSV. by @calebbrown in #239
- Mention a more performant JSON validator by @andrewpollock in #241
- Add more title attributes to improve casual comprehension by @andrewpollock in #244
- add initial reference for CGA (chainguard) by @cpanato in #247
- Validate supported ecosystems and identifier prefixes in the schema definition by @andrewpollock in #246
- Enhance discussion of affected[].version formats by @andrewpollock in #238
- add clarity around distros' use of aliases by @luhring in #250
- Add validation for CVSS by @andrewpollock in #251
- Update Android IDs and links in schema table. by @doryiii in #255
- ci(workflow): add a GitHub Action to validate JSON schema changes by @andrewpollock in #258
- Add Red Hat ecosystem by @jasinner in #257
- Initial commit of OSV record linter by @andrewpollock in #243
New Contributors
- @dfandrich made their first contribution in #235
- @cpanato made their first contribution in #247
- @luhring made their first contribution in #250
- @jasinner made their first contribution in #257
Full Changelog: v1.6.3...v1.6.4
v1.6.3
What's Changed
- Add Malicious Packages and the "MAL" id namespace. by @calebbrown in #223
- Events requirements: recommend the use of
fixed
overlimit
by @zacchiro in #221 - Adding Technical Charter by @redenmartinez in #225
- Revert "Adding Technical Charter" by @hythloda in #227
- Fix truncated copy/paste in database_specific description by @chrisbloom7 in #229
- Enable encoding of Maven registries. by @oliverchang in #231
New Contributors
- @zacchiro made their first contribution in #221
- @redenmartinez made their first contribution in #225
- @hythloda made their first contribution in #227
Full Changelog: v1.6.2...v1.6.3
v1.6.2
What's Changed
- Add support of CVSS v4.0 by @pandatix in #213
- Replace jsonschema with check-jsonschema by @dodys in #218
- Add Ubuntu ecosystem by @dodys in #219
- Clarify some wording for Ubuntu ecosystem by @oliverchang in #220
- Bump version and update changelog. by @oliverchang in #222
New Contributors
1.6.1
What's Changed
- Update Android ecosystem package name definition. by @doryiii in #191
- Swap CRAN and bioconductor by @randy3k in #200
- Fill in TODOs in Haskell parts of osv-schema by @mihaimaruseac in #198
- Clarify why aliases should not be used in vulnerability bundles by @michaelkedar in #197
- Update README.md by @oliverchang in #172
- Revert "Update README.md" by @oliverchang in #209
- Add links to OpenSSF Vulnerabilities Disclosures WG by @david-a-wheeler in #119
- Some schema cleanup. by @oliverchang in #210
New Contributors
- @doryiii made their first contribution in #191
- @randy3k made their first contribution in #200
- @david-a-wheeler made their first contribution in #119
Full Changelog: v1.6.0...v1.6.1