Releases: sonatype/actions
Releases · sonatype/actions
Release 1.10.0
- Added support for API-based CI configuration
- Added support for Sonatype Container Scanner
- Added support for zstd-compressed Docker image layers
- Fixed an issue with memory handling during container scanning
Release 1.9.3
- Fixed an issue where the SARIF file was deleted too early, preventing successful upload
Release 1.9.2
- Temporary workspace files are now cleaned up earlier during the pipeline run
Release 1.9.1
- Added basic authentication support for the
iq-cli-download-urlparameter
Release 1.9.0
- Added support for JavaScript reachability analysis
Release 1.8.2
- Fixed an edge case where scans failed for npm projects
Release 1.8.1
- Maintenance release
Release 1.8.0
- Implemented security controls for the
iq-cli-download-urlparameter in thesetup-iq-cliaction
Release 1.7.0
- Added support for npm workspaces
- Improved scan performance for pnpm-lock.yaml files
Release 1.6.2
- Added Priorities Report URL to Build Summary
- Added support for Docker Client v28 in Docker Image Analysis
- Added support for scanning pnpm-lock.yaml v9 manifest files