Skip to content

Releases: coinbase/salus

2.13.4 (2021-10-11)

11 Oct 21:11
bf6a6c7

Choose a tag to compare

Fixed

Yarn Audit Specs #460
Brakeman exceptions #460

2.13.3 (2021-10-06)

06 Oct 19:58
3e2b18b

Choose a tag to compare

#458

Added:
Properties.severity in SARIF result entries. This field contains the raw scanner severity.

Fixed:
SARIF location URIs are now properly relative.

2.13.2 (2020-09-28)

28 Sep 23:20
753ca94

Choose a tag to compare

Fixed:
Ensure node exceptions handle int ids correctly
#456

2.13.1 (2021-09-24)

24 Sep 17:55
c658e28

Choose a tag to compare

Added

  • Normalized exception configurations.
  • Time boxing support for exceptions.

#448
#449
#450
#451
#452
#453
#454

2.12.1 (2021-09-01)

01 Sep 17:25
2c41c69

Choose a tag to compare

Fixed

  • #438 Empty sarifs caused by the YarnAudit sarif adapter.

2.12.0 (2021-08-24)

24 Aug 20:33
a187993

Choose a tag to compare

Added

Changed

  • #411 Updated ReportGoDep to use go.sum/go.mod in addition to gopkg.lock
  • #418 Scanner timeout values can now be floating point numbers

2.11.13 (2021-07-27)

27 Jul 22:16
7fe74c4

Choose a tag to compare

Fixed

#405 Ignore salus config files that cannot be fetched and log error.

2.11.12 (2021-07-22)

22 Jul 17:40
b3abef5

Choose a tag to compare

Added

  • #388 Support for running Bundle Audit with local vulnerability database.
  • #396 Salus enforced bool under tool.driver.properties in SARIF in order to update Salus-bots display and cause less confusion surrounding active/enforced scanners

Upgraded

  • #387 Bundle Audit to 0.8.0.
  • #400 Rust to 1.53.0
  • Some Gem dependencies.

Fixed

  • #390 Yarn/NPM Audit config overwrites.

2.11.11 (2021-06-25)

25 Jun 20:11
3e09d58

Choose a tag to compare

Added

#379 SARIF refactor to messageStrings
#378 SARIF filter for plugins

Updated

#382 Expanded plugin support. Added events cli_startup, cli_scan, salus_scan, skip_scanner, run_scanner, scanners_ran, run_shell
#376 Bundler gem version to 2.2.19

Fixed

#385 Fixed sample circle ci orb file.
#380 Non zero error code for bad invocations

2.11.10 (2021-05-28)

28 May 20:54
cddb4ae

Choose a tag to compare

Added

#369 Support for running Gosec from a configurable list of subdirs
#370 supported_languages in all current scanners