Skip to content

Conversation

@dependabot
Copy link
Contributor

@dependabot dependabot bot commented on behalf of github Oct 13, 2025

Bumps snyk from 1.1292.1 to 1.1300.0.

Release notes

Sourced from snyk's releases.

v1.1300.0

1.1300.0 (2025-10-08)

The Snyk CLI is being deployed to different deployment channels, users can select the stability level according to their needs. For details please see this documentation

Features

  • general: Improve SARIF compatibility by adding runAutomationDetails (3e232e5)
  • container: Add support scanning system JARs (54e84d8)
  • container: Add TargetOS to output of container scan (aa55cd9)
  • test: Add support for godot projects (d9fc200)
  • test: Add support for maven metaversions (f321ffa)
  • language-server: Add CVSSv4 Links in IDE Issue Details
  • mcp: Workflow and performance improvements

Bug Fixes

  • container: Fixed crashes when scanning docker images with very large files (72cb040)
  • test: Re-enable support for python 2.7 (02c7fe3)
  • test: Improved error information when using --all-projects (36d14f9)
  • test: Fix a bug due to case-sensitive ignores (b432406)
  • test: Resolve project assets file path dynamically (75a152e)
  • iac: Upgrade iac components to address a vulnerability [IAC-3439] (eaaaf84)
  • logging: Fix broken debug logs due to secret redaction by redacting all user input (0cf19a7)
  • language-server: Multiple bugfixes

v1.1299.1

1.1299.1 (2025-09-24)

The Snyk CLI is being deployed to different deployment channels, users can select the stability level according to their needs. For details please see this documentation

Bug Fixes

  • language-server: Fix titles of Snyk Open Source code actions in IDEs (0add44d)
  • code: Include missing uploadResults property in Sarif output (693e548)
  • logging: Fix broken debug logs due to incorrect redaction (0cf19a7)

v1.1299.0

1.1299.0 (2025-08-28)

The Snyk CLI is being deployed to different deployment channels, users can select the stability level according to their needs. For details please see this documentation.

Features

  • auth: Support for PAT auto region configuration. (ad8e4a7)

Bug Fixes

  • code: Fixes code test --report when a project_id environment variable exists. (6168b1d)

... (truncated)

Commits
  • bffd91d Merge pull request #6213 from snyk/chore/CLI-1187_update_1.1300
  • 6c0ae1d Merge pull request #6215 from snyk/docs/automatic-gitbook-update-cli-help-cho...
  • 6cbaa5e docs: synchronizing help from snyk/user-docs
  • 83d8cbc chore: update release notes
  • bf20ff9 chore: automatic integration of language server 18cf38d2c11874938203782e53b41...
  • 207ac90 chore: automatic integration of language server bfd2a1985fd3d7e4eea2aab8c0a16...
  • 72cb040 fix: bump docker plugin to fix a scan bug
  • af0d621 chore: handle network errors and improve debug logs
  • 2d0f209 fix: Fix incorrect error mapping for varying status codes
  • 02c7fe3 fix: Add back support for python 2.7 in the python plugin
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)

Bumps [snyk](https://github.com/snyk/snyk) from 1.1292.1 to 1.1300.0.
- [Release notes](https://github.com/snyk/snyk/releases)
- [Commits](snyk/cli@v1.1292.1...v1.1300.0)

---
updated-dependencies:
- dependency-name: snyk
  dependency-version: 1.1300.0
  dependency-type: direct:development
  update-type: version-update:semver-minor
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code labels Oct 13, 2025
@dependabot @github
Copy link
Contributor Author

dependabot bot commented on behalf of github Oct 27, 2025

Superseded by #95.

@dependabot dependabot bot closed this Oct 27, 2025
@dependabot dependabot bot deleted the dependabot/npm_and_yarn/snyk-1.1300.0 branch October 27, 2025 02:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update Javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant