Skip to content

Update all non-major dependencies - #137

Open
csi-components-e2e wants to merge 1 commit into
mainfrom
renovate/all-non-major-dependencies
Open

Update all non-major dependencies#137
csi-components-e2e wants to merge 1 commit into
mainfrom
renovate/all-non-major-dependencies

Conversation

@csi-components-e2e

@csi-components-e2e csi-components-e2e commented Aug 18, 2026

Copy link
Copy Markdown
Collaborator

This PR contains the following updates:

Package Type Update Change Age Confidence
aws-actions/amazon-ecr-login action patch v2.1.6v2.1.7 age confidence
docker/setup-buildx-action action minor v4.2.0v4.3.0 age confidence
github.com/mikefarah/yq/v4 patch 4.53.34.53.6 age confidence
github/codeql-action action patch v4.37.7v4.37.8 age confidence
kubernetes-sigs/aws-ebs-csi-driver minor 1.631.64 age confidence
mikefarah/yq patch 4.53.34.53.6 age confidence
public.ecr.aws/docker/library/golang (source) stage minor 1.261.27 age confidence
public.ecr.aws/eks-distro-build-tooling/eks-distro-minimal-base stage digest d5579df8744704
renovatebot/github-action action patch v46.2.2v46.2.4 age confidence

Release Notes

aws-actions/amazon-ecr-login (aws-actions/amazon-ecr-login)

v2.1.7

Compare Source

See the changelog for details about the changes included in this release.

docker/setup-buildx-action (docker/setup-buildx-action)

v4.3.0

Compare Source

Full Changelog: docker/setup-buildx-action@v4.2.0...v4.3.0

mikefarah/yq (github.com/mikefarah/yq/v4)

v4.53.6

Compare Source

v4.53.5

Compare Source

v4.53.4

Compare Source

github/codeql-action (github/codeql-action)

v4.37.8

Compare Source

No user facing changes.

kubernetes-sigs/aws-ebs-csi-driver (kubernetes-sigs/aws-ebs-csi-driver)

v1.64

Compare Source

Dependencies

Added
  • cloud.google.com/go/auth: v0.18.2
  • github.com/apapsch/go-jsonmerge/v2: v2.0.0
  • github.com/go-openapi/analysis: v0.25.5
  • github.com/go-openapi/errors: v0.22.8
  • github.com/go-openapi/loads: v0.25.0
  • github.com/go-openapi/runtime: v0.33.0
  • github.com/go-openapi/runtime/server-middleware: v0.30.0
  • github.com/go-openapi/spec: v0.22.9
  • github.com/go-openapi/strfmt: v0.27.0
  • github.com/go-openapi/validate: v0.26.1
  • github.com/go-viper/mapstructure/v2: v2.5.0
  • github.com/google/s2a-go: v0.1.9
  • github.com/googleapis/enterprise-certificate-proxy: v0.3.11
  • github.com/googleapis/gax-go/v2: v2.17.0
  • github.com/oapi-codegen/runtime: v1.6.0
  • github.com/oklog/ulid/v2: v2.1.1
  • go.opentelemetry.io/otel/exporters/stdout/stdouttrace: v1.45.0
  • go.uber.org/mock: v0.6.0
Changed
Removed
  • github.com/antihax/optional: v1.0.0
renovatebot/github-action (renovatebot/github-action)

v46.2.4

Compare Source

Documentation
  • update references to renovatebot/github-action to v46.2.3 (42d0056)
Build System
  • deps: lock file maintenance (e3c0c2e)

v46.2.3

Compare Source

Documentation
  • update references to renovatebot/github-action to v46.2.2 (49f4ea0)
Miscellaneous Chores
Build System
  • deps: lock file maintenance (7df1c30)
Continuous Integration
  • deps: update dependency actions/checkout to v7 (#​1077) (d6180bb)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.17.2 (8695952)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.17.3 (82eda2d)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.20.1 (f478bc0)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.22.0 (755e0d3)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.23.0 (3cb9274)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.23.3 (4436421)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.24.2 (15b3538)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.24.3 (489f1d0)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.25.0 (3683bf4)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.26.0 (e133651)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.27.0 (e22f3f6)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.28.0 (2057af5)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.29.2 (56c415f)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.29.4 (88330ca)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.29.5 (cf40db9)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.30.0 (359d861)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.30.1 (be07738)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.30.2 (4c3519a)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.30.3 (a08a921)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.30.4 (fff9ff0)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.31.0 (e5d35d4)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.32.1 (be027ab)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.32.2 (e5b51b4)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.32.5 (21f4128)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.32.6 (c3a9bd4)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.33.2 (ef454f0)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.34.0 (ec74cb7)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.34.3 (ba4c5a2)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.35.0 (7313a0d)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.35.1 (4e11059)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.35.2 (3ae4864)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.35.3 (f0c13d2)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.35.4 (c16c31c)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.36.0 (8778c4a)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.37.1 (aaaf809)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.38.0 (67e8c5f)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.39.0 (a7eb6cf)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.39.1 (faf9cdc)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.39.2 (2e028a9)
  • deps: update ghcr.io/renovatebot/renovate docker tag to v44.39.3 (7359be7)

Configuration

📅 Schedule: (UTC)

  • Branch creation
    • At any time (no schedule defined)
  • Automerge
    • At any time (no schedule defined)

🚦 Automerge: Enabled.

Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • If you want to rebase/retry this PR, check this box

This PR has been generated by Mend Renovate CLI.

@csi-components-e2e csi-components-e2e added the dependencies Pull requests that update a dependency file label Aug 18, 2026
@csi-components-e2e
csi-components-e2e enabled auto-merge (squash) August 18, 2026 07:27
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:8930686c8f66d5271861b65ea1bd684b06d23458-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:8930686c8f66d52718- │  amazon  │        0        │    -    │
│ 61b65ea1bd684b06d23458-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:8930686c8f66d5271861b65ea1bd684b06d23458-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:8930686c8f66d5271861b- │  amazon  │        0        │    -    │
│ 65ea1bd684b06d23458-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:8930686c8f66d5271861b65ea1bd684b06d23458-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:8930686c8f66d52718- │  amazon  │        0        │    -    │
│ 61b65ea1bd684b06d23458-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:8930686c8f66d5271861b65ea1bd684b06d23458-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:8930686c8f66d5271861b6- │  amazon  │        0        │    -    │
│ 5ea1bd684b06d23458-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:8930686c8f66d5271861b65ea1bd684b06d23458-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:8930686c- │  amazon  │        0        │    -    │
│ 8f66d5271861b65ea1bd684b06d23458-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:8930686c8f66d5271861b65ea1bd684b06d23458-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:8930686c8f66d5271861- │  amazon  │        0        │    -    │
│ b65ea1bd684b06d23458-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:8930686c8f66d5271861b65ea1bd684b06d23458-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:8930686c8f66d5- │  amazon  │        0        │    -    │
│ 271861b65ea1bd684b06d23458-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:8930686c8f66d5271861b65ea1bd684b06d23458-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:8930686c8f- │  amazon  │        0        │    -    │
│ 66d5271861b65ea1bd684b06d23458-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch from 234a000 to 37741ad Compare August 18, 2026 17:17
@csi-components-e2e csi-components-e2e changed the title Update public.ecr.aws/eks-distro-build-tooling/eks-distro-minimal-base:latest-al23 Docker digest to 008d849 Update all non-major dependencies Aug 18, 2026
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:0b897563456773b79fbf9fabe62840b0c869124d-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:0b897563456773b79f- │  amazon  │        0        │    -    │
│ bf9fabe62840b0c869124d-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:0b897563456773b79fbf9fabe62840b0c869124d-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:0b897563456773b79fbf9- │  amazon  │        0        │    -    │
│ fabe62840b0c869124d-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:0b897563456773b79fbf9fabe62840b0c869124d-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:0b897563456773b79f- │  amazon  │        0        │    -    │
│ bf9fabe62840b0c869124d-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:0b897563456773b79fbf9fabe62840b0c869124d-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:0b897563456773b79fbf9f- │  amazon  │        0        │    -    │
│ abe62840b0c869124d-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:0b897563456773b79fbf9fabe62840b0c869124d-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:0b897563- │  amazon  │        0        │    -    │
│ 456773b79fbf9fabe62840b0c869124d-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:0b897563456773b79fbf9fabe62840b0c869124d-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:0b897563456773b79fbf- │  amazon  │        0        │    -    │
│ 9fabe62840b0c869124d-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:0b897563456773b79fbf9fabe62840b0c869124d-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:0b897563456773- │  amazon  │        0        │    -    │
│ b79fbf9fabe62840b0c869124d-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:0b897563456773b79fbf9fabe62840b0c869124d-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:0b89756345- │  amazon  │        0        │    -    │
│ 6773b79fbf9fabe62840b0c869124d-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch from 37741ad to 48edd9b Compare August 18, 2026 19:13
torredil
torredil previously approved these changes Aug 18, 2026
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:c855a5a5816d52f54ab7776153a2c388c68b773d-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:c855a5a5816d52f54a- │  amazon  │        0        │    -    │
│ b7776153a2c388c68b773d-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:c855a5a5816d52f54ab7776153a2c388c68b773d-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:c855a5a5816d52f54ab77- │  amazon  │        0        │    -    │
│ 76153a2c388c68b773d-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:c855a5a5816d52f54ab7776153a2c388c68b773d-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:c855a5a5816d52f54a- │  amazon  │        0        │    -    │
│ b7776153a2c388c68b773d-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:c855a5a5816d52f54ab7776153a2c388c68b773d-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:c855a5a5816d52f54ab777- │  amazon  │        0        │    -    │
│ 6153a2c388c68b773d-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:c855a5a5816d52f54ab7776153a2c388c68b773d-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:c855a5a5- │  amazon  │        0        │    -    │
│ 816d52f54ab7776153a2c388c68b773d-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:c855a5a5816d52f54ab7776153a2c388c68b773d-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:c855a5a5816d52f54ab7- │  amazon  │        0        │    -    │
│ 776153a2c388c68b773d-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:c855a5a5816d52f54ab7776153a2c388c68b773d-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:c855a5a5816d52- │  amazon  │        0        │    -    │
│ f54ab7776153a2c388c68b773d-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:c855a5a5816d52f54ab7776153a2c388c68b773d-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:c855a5a581- │  amazon  │        0        │    -    │
│ 6d52f54ab7776153a2c388c68b773d-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:5c2c5248cb567c8ec0d63b6ea298dcc1b1ad8702-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:5c2c5248cb567c8ec0- │  amazon  │        0        │    -    │
│ d63b6ea298dcc1b1ad8702-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:5c2c5248cb567c8ec0d63b6ea298dcc1b1ad8702-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:5c2c5248cb567c8ec0d63- │  amazon  │        0        │    -    │
│ b6ea298dcc1b1ad8702-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:5c2c5248cb567c8ec0d63b6ea298dcc1b1ad8702-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:5c2c5248cb567c8ec0- │  amazon  │        0        │    -    │
│ d63b6ea298dcc1b1ad8702-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:5c2c5248cb567c8ec0d63b6ea298dcc1b1ad8702-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:5c2c5248cb567c8ec0d63b- │  amazon  │        0        │    -    │
│ 6ea298dcc1b1ad8702-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:5c2c5248cb567c8ec0d63b6ea298dcc1b1ad8702-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:5c2c5248- │  amazon  │        0        │    -    │
│ cb567c8ec0d63b6ea298dcc1b1ad8702-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:5c2c5248cb567c8ec0d63b6ea298dcc1b1ad8702-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:5c2c5248cb567c8ec0d6- │  amazon  │        0        │    -    │
│ 3b6ea298dcc1b1ad8702-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:5c2c5248cb567c8ec0d63b6ea298dcc1b1ad8702-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:5c2c5248cb567c- │  amazon  │        0        │    -    │
│ 8ec0d63b6ea298dcc1b1ad8702-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:5c2c5248cb567c8ec0d63b6ea298dcc1b1ad8702-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:5c2c5248cb- │  amazon  │        0        │    -    │
│ 567c8ec0d63b6ea298dcc1b1ad8702-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch from d268f21 to 91070bd Compare August 19, 2026 05:28
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:b6fc2fba7b45b689c095e6859aad338d917af095-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:b6fc2fba7b45b689c0- │  amazon  │        0        │    -    │
│ 95e6859aad338d917af095-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:b6fc2fba7b45b689c095e6859aad338d917af095-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:b6fc2fba7b45b689c095e- │  amazon  │        0        │    -    │
│ 6859aad338d917af095-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:b6fc2fba7b45b689c095e6859aad338d917af095-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:b6fc2fba7b45b689c0- │  amazon  │        0        │    -    │
│ 95e6859aad338d917af095-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:b6fc2fba7b45b689c095e6859aad338d917af095-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:b6fc2fba7b45b689c095e6- │  amazon  │        0        │    -    │
│ 859aad338d917af095-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:b6fc2fba7b45b689c095e6859aad338d917af095-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:b6fc2fba- │  amazon  │        0        │    -    │
│ 7b45b689c095e6859aad338d917af095-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:b6fc2fba7b45b689c095e6859aad338d917af095-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:b6fc2fba7b45b689c095- │  amazon  │        0        │    -    │
│ e6859aad338d917af095-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:b6fc2fba7b45b689c095e6859aad338d917af095-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:b6fc2fba7b45b6- │  amazon  │        0        │    -    │
│ 89c095e6859aad338d917af095-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:b6fc2fba7b45b689c095e6859aad338d917af095-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:b6fc2fba7b- │  amazon  │        0        │    -    │
│ 45b689c095e6859aad338d917af095-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch from 91070bd to c892569 Compare August 19, 2026 09:46
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:3103c7b7b2c46d9ae34e54f0adb96545740091cf-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:3103c7b7b2c46d9ae3- │  amazon  │        0        │    -    │
│ 4e54f0adb96545740091cf-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:3103c7b7b2c46d9ae34e54f0adb96545740091cf-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:3103c7b7b2c46d9ae34e5- │  amazon  │        0        │    -    │
│ 4f0adb96545740091cf-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:3103c7b7b2c46d9ae34e54f0adb96545740091cf-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:3103c7b7b2c46d9ae3- │  amazon  │        0        │    -    │
│ 4e54f0adb96545740091cf-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:3103c7b7b2c46d9ae34e54f0adb96545740091cf-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:3103c7b7b2c46d9ae34e54- │  amazon  │        0        │    -    │
│ f0adb96545740091cf-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:3103c7b7b2c46d9ae34e54f0adb96545740091cf-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:3103c7b7- │  amazon  │        0        │    -    │
│ b2c46d9ae34e54f0adb96545740091cf-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:3103c7b7b2c46d9ae34e54f0adb96545740091cf-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:3103c7b7b2c46d9ae34e- │  amazon  │        0        │    -    │
│ 54f0adb96545740091cf-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:3103c7b7b2c46d9ae34e54f0adb96545740091cf-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:3103c7b7b2c46d- │  amazon  │        0        │    -    │
│ 9ae34e54f0adb96545740091cf-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:3103c7b7b2c46d9ae34e54f0adb96545740091cf-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:3103c7b7b2- │  amazon  │        0        │    -    │
│ c46d9ae34e54f0adb96545740091cf-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch 6 times, most recently from b55e1d8 to b3aed22 Compare August 20, 2026 06:27
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:85a6c04ea78ff4cc400451c53941d01263f8f10e-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:85a6c04ea78ff4cc40- │  amazon  │        0        │    -    │
│ 0451c53941d01263f8f10e-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:85a6c04ea78ff4cc400451c53941d01263f8f10e-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:85a6c04ea78ff4cc40045- │  amazon  │        0        │    -    │
│ 1c53941d01263f8f10e-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:85a6c04ea78ff4cc400451c53941d01263f8f10e-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:85a6c04ea78ff4cc40- │  amazon  │        0        │    -    │
│ 0451c53941d01263f8f10e-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:85a6c04ea78ff4cc400451c53941d01263f8f10e-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:85a6c04ea78ff4cc400451- │  amazon  │        0        │    -    │
│ c53941d01263f8f10e-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:85a6c04ea78ff4cc400451c53941d01263f8f10e-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:85a6c04e- │  amazon  │        0        │    -    │
│ a78ff4cc400451c53941d01263f8f10e-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:85a6c04ea78ff4cc400451c53941d01263f8f10e-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:85a6c04ea78ff4cc4004- │  amazon  │        0        │    -    │
│ 51c53941d01263f8f10e-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:85a6c04ea78ff4cc400451c53941d01263f8f10e-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:85a6c04ea78ff4- │  amazon  │        0        │    -    │
│ cc400451c53941d01263f8f10e-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:85a6c04ea78ff4cc400451c53941d01263f8f10e-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:85a6c04ea7- │  amazon  │        0        │    -    │
│ 8ff4cc400451c53941d01263f8f10e-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch from b3aed22 to 6b8a911 Compare August 20, 2026 09:13
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:353d7ec31f5b25d5d5eb5c8034aea580ccbef74a-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:353d7ec31f5b25d5d5- │  amazon  │        0        │    -    │
│ eb5c8034aea580ccbef74a-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:353d7ec31f5b25d5d5eb5c8034aea580ccbef74a-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:353d7ec31f5b25d5d5eb5- │  amazon  │        0        │    -    │
│ c8034aea580ccbef74a-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:353d7ec31f5b25d5d5eb5c8034aea580ccbef74a-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:353d7ec31f5b25d5d5- │  amazon  │        0        │    -    │
│ eb5c8034aea580ccbef74a-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:353d7ec31f5b25d5d5eb5c8034aea580ccbef74a-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:353d7ec31f5b25d5d5eb5c- │  amazon  │        0        │    -    │
│ 8034aea580ccbef74a-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:353d7ec31f5b25d5d5eb5c8034aea580ccbef74a-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:353d7ec3- │  amazon  │        0        │    -    │
│ 1f5b25d5d5eb5c8034aea580ccbef74a-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:353d7ec31f5b25d5d5eb5c8034aea580ccbef74a-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:353d7ec31f5b25d5d5eb- │  amazon  │        0        │    -    │
│ 5c8034aea580ccbef74a-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:353d7ec31f5b25d5d5eb5c8034aea580ccbef74a-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:353d7ec31f5b25- │  amazon  │        0        │    -    │
│ d5d5eb5c8034aea580ccbef74a-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:353d7ec31f5b25d5d5eb5c8034aea580ccbef74a-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:353d7ec31f- │  amazon  │        0        │    -    │
│ 5b25d5d5eb5c8034aea580ccbef74a-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch from 6b8a911 to 15025f8 Compare August 20, 2026 09:47
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:7932f547de061ec613bcea501b98728ae7630b00-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:7932f547de061ec613- │  amazon  │        0        │    -    │
│ bcea501b98728ae7630b00-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:7932f547de061ec613bcea501b98728ae7630b00-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:7932f547de061ec613bce- │  amazon  │        0        │    -    │
│ a501b98728ae7630b00-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:7932f547de061ec613bcea501b98728ae7630b00-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:7932f547de061ec613- │  amazon  │        0        │    -    │
│ bcea501b98728ae7630b00-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:7932f547de061ec613bcea501b98728ae7630b00-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:7932f547de061ec613bcea- │  amazon  │        0        │    -    │
│ 501b98728ae7630b00-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:7932f547de061ec613bcea501b98728ae7630b00-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:7932f547- │  amazon  │        0        │    -    │
│ de061ec613bcea501b98728ae7630b00-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:7932f547de061ec613bcea501b98728ae7630b00-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:7932f547de061ec613bc- │  amazon  │        0        │    -    │
│ ea501b98728ae7630b00-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:7932f547de061ec613bcea501b98728ae7630b00-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:7932f547de061e- │  amazon  │        0        │    -    │
│ c613bcea501b98728ae7630b00-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:7932f547de061ec613bcea501b98728ae7630b00-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:7932f547de- │  amazon  │        0        │    -    │
│ 061ec613bcea501b98728ae7630b00-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch from 15025f8 to 12932ef Compare August 21, 2026 12:27
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:819a3757d27facddc29663159764eb65669fff1c-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:819a3757d27facddc2- │  amazon  │        0        │    -    │
│ 9663159764eb65669fff1c-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:819a3757d27facddc29663159764eb65669fff1c-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:819a3757d27facddc2966- │  amazon  │        0        │    -    │
│ 3159764eb65669fff1c-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:819a3757d27facddc29663159764eb65669fff1c-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:819a3757d27facddc2- │  amazon  │        0        │    -    │
│ 9663159764eb65669fff1c-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:819a3757d27facddc29663159764eb65669fff1c-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:819a3757d27facddc29663- │  amazon  │        0        │    -    │
│ 159764eb65669fff1c-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:819a3757d27facddc29663159764eb65669fff1c-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:819a3757- │  amazon  │        0        │    -    │
│ d27facddc29663159764eb65669fff1c-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:819a3757d27facddc29663159764eb65669fff1c-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:819a3757d27facddc296- │  amazon  │        0        │    -    │
│ 63159764eb65669fff1c-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:819a3757d27facddc29663159764eb65669fff1c-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:819a3757d27fac- │  amazon  │        0        │    -    │
│ ddc29663159764eb65669fff1c-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:819a3757d27facddc29663159764eb65669fff1c-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:819a3757d2- │  amazon  │        0        │    -    │
│ 7facddc29663159764eb65669fff1c-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch from 12932ef to f2df691 Compare August 24, 2026 01:52
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:2e193f3bf14759226156f8ddedba24edc47b695e-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:2e193f3bf147592261- │  amazon  │        0        │    -    │
│ 56f8ddedba24edc47b695e-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:2e193f3bf14759226156f8ddedba24edc47b695e-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:2e193f3bf14759226156f- │  amazon  │        0        │    -    │
│ 8ddedba24edc47b695e-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:2e193f3bf14759226156f8ddedba24edc47b695e-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:2e193f3bf147592261- │  amazon  │        0        │    -    │
│ 56f8ddedba24edc47b695e-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:2e193f3bf14759226156f8ddedba24edc47b695e-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:2e193f3bf14759226156f8- │  amazon  │        0        │    -    │
│ ddedba24edc47b695e-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:2e193f3bf14759226156f8ddedba24edc47b695e-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:2e193f3b- │  amazon  │        0        │    -    │
│ f14759226156f8ddedba24edc47b695e-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:2e193f3bf14759226156f8ddedba24edc47b695e-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:2e193f3bf14759226156- │  amazon  │        0        │    -    │
│ f8ddedba24edc47b695e-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:2e193f3bf14759226156f8ddedba24edc47b695e-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:2e193f3bf14759- │  amazon  │        0        │    -    │
│ 226156f8ddedba24edc47b695e-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:2e193f3bf14759226156f8ddedba24edc47b695e-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:2e193f3bf1- │  amazon  │        0        │    -    │
│ 4759226156f8ddedba24edc47b695e-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

| datasource      | package                              | from    | to      |
| --------------- | ------------------------------------ | ------- | ------- |
| github-tags     | aws-actions/amazon-ecr-login         | v2.1.6  | v2.1.7  |
| github-tags     | docker/setup-buildx-action           | v4.2.0  | v4.3.0  |
| go              | github.com/mikefarah/yq/v4           | v4.53.3 | v4.53.6 |
| github-tags     | github/codeql-action                 | v4.37.7 | v4.37.8 |
| github-releases | kubernetes-sigs/aws-ebs-csi-driver   | 1.63    | 1.64    |
| github-releases | mikefarah/yq                         | 4.53.3  | 4.53.6  |
| docker          | public.ecr.aws/docker/library/golang | 1.26    | 1.27    |
| github-tags     | renovatebot/github-action            | v46.2.2 | v46.2.4 |
@csi-components-e2e
csi-components-e2e force-pushed the renovate/all-non-major-dependencies branch from f2df691 to 9aa43ca Compare August 24, 2026 04:53
@github-actions

Copy link
Copy Markdown

Trivy Output

702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:c502330ca6a99f5573baed2e2c2ae5b65038db2b-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-snapshotter:c502330ca6a99f5573- │  amazon  │        0        │    -    │
│ baed2e2c2ae5b65038db2b-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-snapshotter                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-snapshotter (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:c502330ca6a99f5573baed2e2c2ae5b65038db2b-v4.12.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-attacher:c502330ca6a99f5573bae- │  amazon  │        0        │    -    │
│ d2e2c2ae5b65038db2b-v4.12.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux))  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-attacher                                                                     │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-attacher (gobinary)
=======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:c502330ca6a99f5573baed2e2c2ae5b65038db2b-v6.3.0-eksbuild.4

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-provisioner:c502330ca6a99f5573- │  amazon  │        0        │    -    │
│ baed2e2c2ae5b65038db2b-v6.3.0-eksbuild.4 (amazon 2023.12.20260817 (Amazon        │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-provisioner                                                                  │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-provisioner (gobinary)
==========================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:c502330ca6a99f5573baed2e2c2ae5b65038db2b-v2.2.1-eksbuild.3

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-resizer:c502330ca6a99f5573baed- │  amazon  │        0        │    -    │
│ 2e2c2ae5b65038db2b-v2.2.1-eksbuild.3 (amazon 2023.12.20260817 (Amazon Linux))    │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-resizer                                                                      │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


csi-resizer (gobinary)
======================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:c502330ca6a99f5573baed2e2c2ae5b65038db2b-v2.17.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/csi-node-driver-registrar:c502330c- │  amazon  │        0        │    -    │
│ a6a99f5573baed2e2c2ae5b65038db2b-v2.17.0-eksbuild.5 (amazon 2023.12.20260817     │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ csi-node-driver-registrar                                                        │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:c502330ca6a99f5573baed2e2c2ae5b65038db2b-v2.19.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/livenessprobe:c502330ca6a99f5573ba- │  amazon  │        0        │    -    │
│ ed2e2c2ae5b65038db2b-v2.19.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon Linux)) │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ livenessprobe                                                                    │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:c502330ca6a99f5573baed2e2c2ae5b65038db2b-v8.6.0-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/snapshot-controller:c502330ca6a99f- │  amazon  │        0        │    -    │
│ 5573baed2e2c2ae5b65038db2b-v8.6.0-eksbuild.5 (amazon 2023.12.20260817 (Amazon    │          │                 │         │
│ Linux))                                                                          │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ snapshot-controller                                                              │ gobinary │        1        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)


snapshot-controller (gobinary)
==============================
Total: 1 (UNKNOWN: 1, LOW: 0, MEDIUM: 0, HIGH: 0, CRITICAL: 0)

┌─────────────────────┬───────────────┬──────────┬──────────┬───────────────────┬───────────────┬──────────────────────────────────────────────────────────┐
│       Library       │ Vulnerability │ Severity │  Status  │ Installed Version │ Fixed Version │                          Title                           │
├─────────────────────┼───────────────┼──────────┼──────────┼───────────────────┼───────────────┼──────────────────────────────────────────────────────────┤
│ golang.org/x/crypto │ GO-2026-5932  │ UNKNOWN  │ affected │ v0.55.0           │               │ The golang.org/x/crypto/openpgp package is unmaintained, │
│                     │               │          │          │                   │               │ unsafe by design, and has known security...              │
└─────────────────────┴───────────────┴──────────┴──────────┴───────────────────┴───────────────┴──────────────────────────────────────────────────────────┘
702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:c502330ca6a99f5573baed2e2c2ae5b65038db2b-v0.9.5-eksbuild.5

Report Summary

┌──────────────────────────────────────────────────────────────────────────────────┬──────────┬─────────────────┬─────────┐
│                                      Target                                      │   Type   │ Vulnerabilities │ Secrets │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ 702945799511.dkr.ecr.us-west-2.amazonaws.com/volume-modifier-for-k8s:c502330ca6- │  amazon  │        0        │    -    │
│ a99f5573baed2e2c2ae5b65038db2b-v0.9.5-eksbuild.5 (amazon 2023.12.20260817        │          │                 │         │
│ (Amazon Linux))                                                                  │          │                 │         │
├──────────────────────────────────────────────────────────────────────────────────┼──────────┼─────────────────┼─────────┤
│ volume-modifier-for-k8s                                                          │ gobinary │        0        │    -    │
└──────────────────────────────────────────────────────────────────────────────────┴──────────┴─────────────────┴─────────┘
Legend:
- '-': Not scanned
- '0': Clean (no security findings detected)

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants