Skip to content

Releases: RedHatInsights/vulnerability-engine

v2.41.1

08 Oct 13:01
Compare
Choose a tag to compare

v2.41.1 (2024-10-08)

Continuous Integration

  • ci: create patch tag for more keywords

going to enable Konflux image build only for tags (7d78a99)

v2.41.0

08 Oct 11:04
Compare
Choose a tag to compare

v2.41.0 (2024-10-08)

Chores

  • chore(platform-mock): deny System identities

RHINENG-13409 (dda4489)

  • chore: allow sending System identity headers

RHINENG-13409 (b9ad030)

  • chore(deps): update pre-commit hook psf/black to v24.10.0

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (f5245ef)

Features

  • feat(manager): support System identity auth for certain endpoints
  • playbook templates
  • APIs related to the given inventory ID

RHINENG-13409 (bc49e63)

  • feat(manager): properly log different identity types

RHINENG-13409 (2228a8f)

Testing

  • test: decorator behavior

RHINENG-13409 (f3b4226)

v2.40.10

07 Oct 12:17
Compare
Choose a tag to compare

v2.40.10 (2024-10-07)

Chore

  • chore(deps): update pre-commit hook pre-commit/pre-commit-hooks to v5

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (ff49f52)

  • chore(deps): update grafana/grafana docker tag to v11.2.2

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (6d62450)

  • chore(deps): update konflux references to 37b9187

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (d112592)

  • chore: trigger stage deployment (40c3d56)

  • chore(deps): update konflux references

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (2dcc0ee)

  • chore: konflux image url (e6c623a)

  • chore: automerge PRs updating konflux references (be7e4ff)

Fix

  • fix(vmaas-sync): return only repositories having advisories since the last modified_since (dc6b4f3)

v2.40.9

27 Sep 11:37
Compare
Choose a tag to compare

v2.40.9 (2024-09-27)

Chore

  • chore(deps): update grafana/grafana docker tag to v11.2.1

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (a22c03d)

  • chore: replace reorder-python-imports by isort

black and reorder-python-imports are incompatibles

asottile/reorder-python-imports#366

asottile/reorder-python-imports#367

psf/black#4175 (c285066)

  • chore: fix black v24 issues (e97ad01)

  • chore: fix flake8 v7 issues (83cd073)

  • chore(deps): update pre-commit hook pycqa/flake8 to v7

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (470c6d9)

  • chore(deps): update pre-commit hook psf/black to v24

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (4ef3a26)

Fix

  • fix(manager): repair error handling when forbidden

RHINENG-12111: 500 HTTP error when requesting api with account without persmissions (2c7c9f9)

v2.40.8

24 Sep 13:38
Compare
Choose a tag to compare

v2.40.8 (2024-09-24)

Chore

  • chore(deps): update grafana/grafana docker tag to v11

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (efeb90d)

  • chore(deps): update pre-commit hook pre-commit/pre-commit-hooks to v4.6.0

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (70935e2)

  • chore(deps): update pre-commit hook psf/black to v23.12.1

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (52ee91e)

  • chore(deps): update pre-commit hook asottile/reorder-python-imports to v3.13.0

Signed-off-by: red-hat-konflux <126015336+red-hat-konflux[bot]@users.noreply.github.com> (a88782b)

  • chore: use ubi9

RHINENG-12543

RHINENG-12556 (ee5c78f)

  • chore: update dependencies

RHINENG-12514 (32aeb37)

Fix

  • fix: handle error when inserting empty cve name into db

RHINENG-12773 (bb5813e)

Unknown

v2.40.7

12 Sep 09:03
Compare
Choose a tag to compare

v2.40.7 (2024-09-12)

Chore

  • chore(ephemeral): remove --no-remove-resources

RHINENG-11573 (4cc5da1)

Fix

  • fix: workaround cve_cache issue with inventory groups

When there are 2 users with different inventory groups in the same account, they can be invalidating cache for each other which will cause that api is slow for both of them.
Cache only access to all inventory hosts. When a user doesn't have any inventory groups, then the query will be used without cache.

Stats from DB:
count of accounts | inventory groups
31581 | [] // access to all hosts
1 | [[]] // access to ungrouped hosts only
6 | access to only 1 inventory group
1 | access to 1 group and to ungrouped hosts
1 | access to multiple groups and ungrouped hosts

RHINENG-12465 (6b529e7)

v2.40.6

19 Aug 14:52
Compare
Choose a tag to compare

v2.40.6 (2024-08-19)

Fix

  • fix(vmaas-sync): make sure event row is commited before sending it in kafka messages (c1f4017)

v2.40.5

19 Aug 09:56
Compare
Choose a tag to compare

v2.40.5 (2024-08-19)

Fix

  • fix(evaluator): compare offset-aware datetimes (0fe5d0e)

v2.40.4

16 Aug 16:03
Compare
Choose a tag to compare

v2.40.4 (2024-08-16)

Fix

  • fix(evaluator): skip by message timestamp only in recalcs, recalcs are not full evaluations like uploads (32fd70f)

v2.40.3

16 Aug 14:49
Compare
Choose a tag to compare

v2.40.3 (2024-08-16)

Fix

  • fix(evaluator): missing await (a7cb275)