From aaeafa83240a4d97c6636f30635230801322076f Mon Sep 17 00:00:00 2001 From: Martin Roy Date: Thu, 12 Dec 2024 15:25:40 -0500 Subject: [PATCH] BST-13818 Update composition/sci scanner to latest This brings the extra resilience to invalid files from the semgrep scanner. --- scanners/boostsecurityio/baseline/module.yaml | 2 +- scanners/boostsecurityio/composition/module.yaml | 2 +- scanners/boostsecurityio/supply-chain-inventory/module.yaml | 2 +- 3 files changed, 3 insertions(+), 3 deletions(-) diff --git a/scanners/boostsecurityio/baseline/module.yaml b/scanners/boostsecurityio/baseline/module.yaml index 18a60fa..4d56432 100644 --- a/scanners/boostsecurityio/baseline/module.yaml +++ b/scanners/boostsecurityio/baseline/module.yaml @@ -17,7 +17,7 @@ steps: - scan: command: docker: - image: public.ecr.aws/boostsecurityio/boost-scanner-native:44a65bf@sha256:cefdba826edb2138b6d219d7ff398181158caac3755e6542171ba6d8c06e594f + image: public.ecr.aws/boostsecurityio/boost-scanner-native:9f3dd13@sha256:3c516265c193f9b62fa2899276efd52d214c8b49a2df8c1891d068b845485000 command: scanner scan workdir: /src name: scanner diff --git a/scanners/boostsecurityio/composition/module.yaml b/scanners/boostsecurityio/composition/module.yaml index 316fcb0..25c76b9 100644 --- a/scanners/boostsecurityio/composition/module.yaml +++ b/scanners/boostsecurityio/composition/module.yaml @@ -17,7 +17,7 @@ steps: format: metadata command: docker: - image: public.ecr.aws/boostsecurityio/boost-scanner-composition:b5ed688@sha256:a68838c47601fa6b98c6583cc099e3bc7748bf37adf33ca9a05a74efb719066c + image: public.ecr.aws/boostsecurityio/boost-scanner-composition:b1febfd@sha256:8576f25c858ddd9f6f5c326e8449de89443bc3ff7cda408d4edec16db379b434 command: scan workdir: /src environment: diff --git a/scanners/boostsecurityio/supply-chain-inventory/module.yaml b/scanners/boostsecurityio/supply-chain-inventory/module.yaml index 1957a8e..db8d90c 100644 --- a/scanners/boostsecurityio/supply-chain-inventory/module.yaml +++ b/scanners/boostsecurityio/supply-chain-inventory/module.yaml @@ -16,7 +16,7 @@ steps: format: supply_chain_inventory command: docker: - image: public.ecr.aws/boostsecurityio/boost-scanner-composition:33167e0@sha256:0c2d1a78ffb097d4fba7b193f314ac065bec523a7a5b78830452fd688119f342 + image: public.ecr.aws/boostsecurityio/boost-scanner-composition:b1febfd@sha256:8576f25c858ddd9f6f5c326e8449de89443bc3ff7cda408d4edec16db379b434 command: inventory workdir: /src environment: