-
Notifications
You must be signed in to change notification settings - Fork 551
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Backport GHSA-vfp6-jrw2-99g9 #3364
Conversation
* Add limit to number of sigs and attestations Signed-off-by: AdamKorcz <44787359+AdamKorcz@users.noreply.github.com> * Update pkg/cosign/fetch.go Co-authored-by: Cody Soyland <codysoyland@gmail.com> Signed-off-by: AdamKorcz <44787359+AdamKorcz@users.noreply.github.com> * Update error message Signed-off-by: Hayden B <hblauzvern@google.com> * fix compilation error Signed-off-by: Hayden Blauzvern <hblauzvern@google.com> * Add e2e tests Signed-off-by: Hayden Blauzvern <hblauzvern@google.com> --------- Signed-off-by: AdamKorcz <44787359+AdamKorcz@users.noreply.github.com> Signed-off-by: Hayden B <hblauzvern@google.com> Signed-off-by: Hayden Blauzvern <hblauzvern@google.com> Co-authored-by: Cody Soyland <codysoyland@gmail.com> Co-authored-by: Hayden B <hblauzvern@google.com>
Signed-off-by: cpanato <ctadeu@gmail.com>
Codecov ReportAttention:
Additional details and impacted files@@ Coverage Diff @@
## release-1.13 #3364 +/- ##
================================================
- Coverage 30.16% 30.14% -0.03%
================================================
Files 136 136
Lines 8436 8443 +7
================================================
Hits 2545 2545
- Misses 5561 5568 +7
Partials 330 330 ☔ View full report in Codecov by Sentry. |
Signed-off-by: cpanato <ctadeu@gmail.com>
Signed-off-by: cpanato <ctadeu@gmail.com>
Signed-off-by: cpanato <ctadeu@gmail.com>
What should we do with the failing tests? |
I am not sure why we are seeing these errors. Do we need to update the tests to run on 1.13 ? |
not sure either :( |
scaffolding is pinned |
i will take a look on that tomorrow |
Signed-off-by: cpanato <ctadeu@gmail.com>
passing that one now :) |
Signed-off-by: cpanato <ctadeu@gmail.com>
I will merge and check the post submits and try to run a rehearsal before we do the official release |
No description provided.