Skip to content

[Snyk] Upgrade snyk from 1.278.1 to 1.1306.0 - #1630

Open
danielvwork wants to merge 2 commits into
mainfrom
snyk-upgrade-0d2d0bb1624296527a9ef228d8f722b8
Open

[Snyk] Upgrade snyk from 1.278.1 to 1.1306.0#1630
danielvwork wants to merge 2 commits into
mainfrom
snyk-upgrade-0d2d0bb1624296527a9ef228d8f722b8

Conversation

@danielvwork

Copy link
Copy Markdown

snyk-top-banner

Snyk has created this PR to upgrade snyk from 1.278.1 to 1.1306.0.

ℹ️ Keep your dependencies up-to-date. This makes it easier to fix existing vulnerabilities and to more quickly identify and fix newly disclosed vulnerabilities when they affect your project.


  • The recommended version is 1221 versions ahead of your current version.

  • The recommended version was released 22 days ago.

Issues fixed by the recommended upgrade:

Issue Score Exploit Maturity
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-6240864
211 Proof of Concept
high severity Prototype Pollution
SNYK-JS-LODASHSET-1320032
211 Proof of Concept
high severity Authorization Bypass Through User-Controlled Key
SNYK-JS-PARSEPATH-2936439
211 Proof of Concept
high severity Prototype Pollution
SNYK-JS-NCONF-2395478
211 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-NETMASK-1089716
211 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-NETMASK-6056519
211 Proof of Concept
high severity Remote Code Execution (RCE)
SNYK-JS-PACRESOLVER-1564857
211 Proof of Concept
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12704893
211 Proof of Concept
high severity Code Injection
SNYK-JS-SNYKGRADLEPLUGIN-8248487
211 No Known Exploit
high severity Server-side Request Forgery (SSRF)
SNYK-JS-IP-12761655
211 Proof of Concept
high severity Directory Traversal
SNYK-JS-TMP-16881240
211 Proof of Concept
high severity Directory Traversal
SNYK-JS-TMP-17315641
211 Proof of Concept
medium severity Server-Side Request Forgery (SSRF)
SNYK-JS-IP-7148531
211 Proof of Concept
medium severity Denial of Service (DoS)
SNYK-JS-JSZIP-1251497
211 Proof of Concept
medium severity Arbitrary File Write via Archive Extraction (Zip Slip)
SNYK-JS-JSZIP-3188562
211 No Known Exploit
medium severity Cross-site Scripting (XSS)
SNYK-JS-PARSEURL-2935944
211 Proof of Concept
medium severity Information Exposure
SNYK-JS-PARSEURL-2935947
211 Proof of Concept
critical severity Server-side Request Forgery (SSRF)
SNYK-JS-PARSEURL-2936249
211 Proof of Concept
high severity Directory Traversal
SNYK-JS-TMP-16881240
211 Proof of Concept
high severity Directory Traversal
SNYK-JS-TMP-17315641
211 Proof of Concept
high severity Code Injection
SNYK-JS-SNYKPHPPLUGIN-8248485
211 No Known Exploit
medium severity Cross-site Scripting (XSS)
SNYK-JS-PARSEURL-2942134
211 Proof of Concept
medium severity Server-side Request Forgery (SSRF)
SNYK-JS-PARSEURL-3023021
211 Proof of Concept
medium severity Improper Input Validation
SNYK-JS-PARSEURL-3024398
211 Proof of Concept
medium severity Command Injection
SNYK-JS-SNYK-3037342
211 Proof of Concept
medium severity Command Injection
SNYK-JS-SNYK-3038622
211 Proof of Concept
medium severity Code Injection
SNYK-JS-SNYK-3111871
211 No Known Exploit
medium severity Command Injection
SNYK-JS-SNYKDOCKERPLUGIN-3039679
211 Proof of Concept
medium severity Command Injection
SNYK-JS-SNYKGOPLUGIN-3037316
211 Proof of Concept
medium severity Command Injection
SNYK-JS-SNYKGRADLEPLUGIN-3038624
211 Proof of Concept
medium severity Command Injection
SNYK-JS-SNYKMVNPLUGIN-3038623
211 Proof of Concept
medium severity Command Injection
SNYK-JS-SNYKPYTHONPLUGIN-3039677
211 Proof of Concept
medium severity Command Injection
SNYK-JS-SNYKSBTPLUGIN-3038626
211 Proof of Concept
medium severity Command Injection
SNYK-JS-SNYKSNYKCOCOAPODSPLUGIN-3038625
211 Proof of Concept
medium severity Symlink Attack
SNYK-JS-TMP-11501554
211 Proof of Concept
medium severity Symlink Attack
SNYK-JS-TMP-11501554
211 Proof of Concept
medium severity Prototype Pollution
SNYK-JS-DOTPROP-543489
211 Proof of Concept
low severity Insertion of Sensitive Information into Log File
SNYK-JS-SNYK-10497607
211 Proof of Concept
low severity Regular Expression Denial of Service (ReDoS)
SNYK-JS-WORDWRAP-3149973
211 Proof of Concept

Breaking Change Risk

Merge Risk: High

Notice: This assessment is enhanced by AI.

Release notes
Package name: snyk
  • 1.1306.0 - 2026-07-09

    1.1306.0 (2026-07-09)

    The Snyk CLI is being deployed to different deployment channels, users can select the stability level according to their needs. For details please see this documentation

    Features

    • doctor: Adds the snyk doctor command to diagnose common CLI problems: generate a diagnostic report for the current system, or analyze debug log output. (ab56a0e)
    • container: Container scans now detect the Java runtime version across a wider range of JVM base images, and can now find vulnerabilities in .NET application dependencies. (5586aac)
    • mcp: The breakability evaluation tool in the Snyk MCP Server is now enabled by default and no longer requires an experimental flag. (56a9196)
    • test: Improves dependency detection for Gradle projects. (c819b69)
    • redteam: The experimental snyk redteam command has been removed from the CLI, following its deprecation (deprecation date May 31, 2026). (c7d0e3e)

    Bug Fixes

    • general: Shows a warning when a request is automatically retried due to rate limiting, instead of retrying silently. (f803397)
    • general: Skips the reachability upload when no supported files are present, instead of failing. (9ba448c)
    • test: Fixes dependency resolution for Swift Package Manager projects that reference packages by registry identity, so they're correctly matched to their GitHub source for vulnerability scanning. (64ac442)
    • test: Fixes scanning of sbt projects with custom Scala configurations. (5765a12)
    • test: Fixes a bug where scanning Yarn workspaces could report vulnerabilities from a workspace member's dev dependencies as if they were production dependencies, when that member was consumed by a sibling package. (ade08e4)
    • test: Gracefully handle missing dotnet CLI during NuGet runtime resolution scans (f61edb3)
    • deps: Updates dependencies to fix vulnerabilities:
  • 1.1306.0-rc.2a8fe245f5012fd2e3ca864006c793582b2d4da5 - 2026-07-09
  • 1.1306.0-preview.dcacc601a0835066cdeca30c1ab4cdf3bb87196f - 2026-07-09
  • 1.1306.0-preview.b6736a4d77b48e30a4cb332b3f2965c9115a16bd - 2026-07-07
  • 1.1306.0-preview.555c127d14a4d149de36a27bd09e5e63e81c5306 - 2026-07-08
  • 1.1306.0-preview.07d3e04a9416ae7cf4b5a3facdd100fd531fffc3 - 2026-07-07
  • 1.1305.2 - 2026-06-23

    1.1305.2 (2026-06-23)

    Bug Fixes

  • 1.1305.1 - 2026-06-02

    1.1305.1 (2026-06-02)

    Bug Fixes

  • 1.1305.0 - 2026-05-20

    1.1305.0 (2026-05-20)

    The Snyk CLI is being deployed to different deployment channels, users can select the stability level according to their needs. For details please see this documentation

    Features

    • sbom: Introduces the --allow-incomplete-sbom flag for snyk sbom, allowing the SBOM to be generated even when individual projects fail to resolve. Failed projects are surfaced as per-project errors alongside the successful results. (29ba128)
    • container: Speed up snyk container monitor by sending dependency requests in parallel, configurable via the SNYK_REQUEST_CONCURRENCY environment variable. (186c5fb, 6764f65)
    • general: Linux ARM64 and AMD64 binaries are now statically linked by default. (f02b850)
    • mcp: Adds an experimental breakability evaluation tool to the Snyk MCP Server. (69806f5)

    Bug Fixes

  • 1.1304.3 - 2026-05-13

    1.1304.3 (2026-05-13)

    The Snyk CLI is being deployed to different deployment channels, users can select the stability level according to their needs. For details please see this documentation

    Bug Fixes

    Known Issues

  • 1.1304.2 - 2026-05-06

    1.1304.2 (2026-05-06)

    The Snyk CLI is being deployed to different deployment channels, users can select the stability level according to their needs. For details please see this documentation

    Bug Fixes

  • 1.1304.1 - 2026-04-27

    1.1304.1 (2026-04-27)

    The Snyk CLI is being deployed to different deployment channels, users can select the stability level according to their needs. For details please see this documentation

    Bug Fixes

    • general: Improved error handling to prioritize and surface the most relevant error and derive the correct exit code when multiple errors occur during CLI execution. (b505a96)
    • deps: Updates dependencies to fix vulnerabilities for CVE-2026-4660 and CVE-2026-39883 (2a95d85)
    • agent-scan: Improved CI flexibility with an issues ignore option, and added support for Windows x86 and macOS x86 architectures. (7d72bbf)
  • 1.1304.0 - 2026-04-09

    1.1304.0 (2026-04-09)

    The Snyk CLI is being deployed to different deployment channels, users can select the stability level according to their needs. For details please see this documentation

    Features

    • aibom: Introduces the snyk aibom test command. (2978044)
    • test, monitor, sbom: Introduce --maven-skip-wrapper flag to force the use of a globally installed mvn command. (0ee90ca, ff31066)
    • general: Introduce explicit configuration for network retry max-attempts. (1fbdf38)
    • container: Add deprecation warnings for -shaded-jars-depth and non-numeric values for --nested-jars-depth. (321b6f5)
    • container: Extend support for java runtime binary scanning (b60473a)
    • mcp: Improves auto-enable behavior for Snyk Code, promotes package health checks to stable. (5f5898f)
    • redteam: Adds a vulnerability summary to scanned output. (52eaf5a)
    • redteam: Add --json flag support for list commands, exhaustive and eager modes. (e962c4d)

    Bug Fixes

    • general: Fix printing JSON output on stdout when only --json-file-output is specified. (32f65f0)
    • test: Fixes an issue where no files were uploaded when using --skip-unresolved. (71ca761)
    • test: Prevents scan failures when Maven builds succeed with non-fatal errors. (b30db97)
    • test: Fixes Go PackageURL generation and import path normalization for projects using replace directives. (7c7a366, ee7d72b)
    • test: Improves SDK detection when host and SDK versions differ. (96d0817)
    • test: Ensures project names are populated when scanning NuGet projects from repository root. (c043553)
    • container: Snyk Container scans of tar files on Windows should now report vulnerabilities for Python application package files. (9b86790)
    • container: Override packages with inaccurate pom.properties files (b60473a)
    • test: Ensure Yarn workspace pacakges matches are actual members defined in the root package.json. (0dd6581)
    • test: Fix increased scan times when testing Golang projects. (f2f5ba2)
    • code: Snyk Code scans now return clearer error message and exit codes when testing unsupported projects (6f5b4e3)
    • test: Fix a bug where aliased packages were being resolved with the target name insted of the alias for yarn projects. (dcbec6f)
    • test: Fix a bug where Python packages with . characters in their name were incorrectly parsed to include - characters. (9a2a36e)
    • deps: Updates dependencies to fix vulnerabilities:
  • 1.1303.2 - 2026-03-23
  • 1.1303.1 - 2026-03-04
  • 1.1303.0 - 2026-02-26
  • 1.1302.1 - 2026-01-22
  • 1.1302.0 - 2026-01-14
  • 1.1301.2 - 2025-12-16
  • 1.1301.1 - 2025-12-08
  • 1.1301.0 - 2025-11-19
  • 1.1300.2 - 2025-10-28
  • 1.1300.1 - 2025-10-21
  • 1.1300.0 - 2025-10-08
  • 1.1299.1 - 2025-09-24
  • 1.1299.0 - 2025-09-01
  • 1.1298.3 - 2025-08-14
  • 1.1298.2 - 2025-07-30
  • 1.1298.1 - 2025-07-22
  • 1.1298.0 - 2025-07-16
  • 1.1297.3 - 2025-06-23
  • 1.1297.2 - 2025-06-16
  • 1.1297.1 - 2025-05-16
  • 1.1297.0 - 2025-05-14
  • 1.1296.2 - 2025-04-16
  • 1.1296.1 - 2025-03-27
  • 1.1296.0 - 2025-03-13
  • 1.1295.4 - 2025-02-26
  • 1.1295.3 - 2025-02-11
  • 1.1295.2 - 2025-01-24
  • 1.1295.1 - 2025-01-23
  • 1.1295.0 - 2025-01-08
  • 1.1294.3 - 2024-12-12
  • 1.1294.2 - 2024-11-26
  • 1.1294.1 - 2024-11-20
  • 1.1294.0 - 2024-10-23
  • 1.1293.1 - 2024-09-11
  • 1.1293.0 - 2024-08-28
  • 1.1292.4 - 2024-08-12
  • 1.1292.3 - 2024-08-12
  • 1.1292.2 - 2024-08-01
  • 1.1292.1 - 2024-06-27
  • 1.1292.0 - 2024-06-26
  • 1.1291.1 - 2024-05-27
  • 1.1291.0 - 2024-04-30
  • 1.1290.0 - 2024-04-19
  • 1.1289.0 - 2024-04-16
  • 1.1288.1 - 2024-04-15
  • 1.1288.0 - 2024-04-09
  • 1.1287.0 - 2024-04-04
  • 1.1286.4 - 2024-04-04
  • 1.1286.3 - 2024-04-03
  • 1.1286.2 - 2024-03-29
  • 1.1286.1 - 2024-03-26
  • 1.1286.0 - 2024-03-25
  • 1.1285.1 - 2024-03-25
  • 1.1285.0 - 2024-03-18
  • 1.1284.0 - 2024-03-14
  • 1.1283.1 - 2024-03-13
  • 1.1283.0 - 2024-03-06
  • 1.1282.1 - 2024-03-05
  • 1.1282.0 - 2024-03-05
  • 1.1281.0 - 2024-02-28
  • 1.1280.1 - 2024-02-20
  • 1.1280.0 - 2024-02-15
  • 1.1279.0 - 2024-02-12
  • 1.1278.0 - 2024-02-06
  • 1.1277.0 - 2024-02-05
  • 1.1276.0 - 2024-01-30
  • 1.1275.0 - 2024-01-26
  • 1.1274.0 - 2024-01-23
  • 1.1273.0 - 2024-01-23
  • 1.1272.0 - 2024-01-22
  • 1.1271.0 - 2024-01-19
  • 1.1270.0 - 2024-01-18
  • 1.1269.0 - 2024-01-10
  • 1.1268.0 - 2024-01-08
  • 1.1267.0 - 2024-01-02
  • 1.1266.0 - 2023-12-20
  • 1.1265.0 - 2023-12-20
  • 1.1264.0 - 2023-12-14
  • 1.1263.0 - 2023-12-14
  • 1.1262.0 - 2023-12-13
  • 1.1261.0 - 2023-12-12
  • 1.1260.0 - 2023-12-04
  • 1.1259.0 - 2023-11-30
  • 1.1258.0 - 2023-11-29
  • 1.1257.0 - 2023-11-28
  • 1.1256.0 - 2023-11-27
  • 1.1255.0 - 2023-11-27
  • 1.1254.0 - 2023-11-27
  • 1.1253.0 - 2023-11-24
  • 1.1252.0 - 2023-11-22
  • 1.1251.0 - 2023-11-21
  • 1.1250.0 - 2023-11-20
  • 1.1249.0 - 2023-11-20
  • 1.1248.0 - 2023-11-16
  • 1.1247.0 - 2023-11-16
  • 1.1246.0 - 2023-11-15
  • 1.1245.0 - 2023-11-14
  • 1.1244.0 - 2023-11-13
  • 1.1243.0 - 2023-11-09
  • 1.1242.0 - 2023-11-08
  • 1.1241.0 - 2023-11-08
  • 1.1240.0 - 2023-11-07
  • 1.1239.0 - 2023-11-07
  • 1.1238.0 - 2023-10-31
  • 1.1237.0 - 2023-10-24
  • 1.1236.0 - 2023-10-18
  • 1.1235.0 - 2023-10-16
  • 1.1234.0 - 2023-10-11
  • 1.1233.0 - 2023-10-09
  • 1.1232.0 - 2023-10-05
  • 1.1231.0 - 2023-10-05
  • 1.1230.0 - 2023-10-04
  • 1.1229.0 - 2023-10-03
  • 1.1228.0 - 2023-09-28
  • 1.1227.0 - 2023-09-25
  • 1.1226.0 - 2023-09-21
  • 1.1225.0 - 2023-09-19
  • 1.1224.0 - 2023-09-19
  • 1.1223.0 - 2023-09-19
  • 1.1222.0 - 2023-09-19
  • 1.1221.0 - 2023-09-18
  • 1.1220.0 - 2023-09-14
  • 1.1219.0 - 2023-09-14
  • 1.1218.0 - 2023-09-14
  • 1.1217.0 - 2023-09-12
  • 1.1216.0 - 2023-09-11
  • 1.1215.0 - 2023-09-08
  • 1.1214.0 - 2023-09-07
  • 1.1213.0 - 2023-09-06
  • 1.1212.0 - 2023-09-05
  • 1.1211.0 - 2023-09-04
  • 1.1210.0 - 2023-09-04
  • 1.1209.0 - 2023-08-31
  • 1.1208.0 - 2023-08-31
  • 1.1207.0 - 2023-08-28
  • 1.1206.0 - 2023-08-23
  • 1.1205.0 - 2023-08-21
  • 1.1204.0 - 2023-08-21
  • 1.1203.0 - 2023-08-17
  • 1.1202.0 - 2023-08-15
  • 1.1201.0 - 2023-08-15
  • 1.1200.0 - 2023-08-03
  • 1.1199.0 - 2023-08-02
  • 1.1198.0 - 2023-07-31
  • 1.1197.0 - 2023-07-31
  • 1.1196.0 - 2023-07-25
  • 1.1195.0 - 2023-07-25
  • 1.1194.0 - 2023-07-24
  • 1.1193.0 - 2023-07-20
  • 1.1192.0 - 2023-07-19
  • 1.1191.0 - 2023-07-19
  • 1.1190.0 - 2023-07-14
  • 1.1189.0 - 2023-07-13
  • 1.1188.0 - 2023-07-12
  • 1.1187.0 - 2023-06-30
  • 1.1186.0 - 2023-06-27
  • 1.1185.0 - 2023-06-26
  • 1.1184.0 - 2023-06-23
  • 1.1183.0 - 2023-06-19
  • 1.1182.0 - 2023-06-16
  • 1.1181.0 - 2023-06-15
  • 1.1180.0 - 2023-06-14
  • 1.1179.0 - 2023-06-13
  • 1.1178.0 - 2023-06-12
  • 1.1177.0 - 2023-06-09
  • 1.1176.0 - 2023-06-08
  • 1.1175.0 - 2023-06-06
  • 1.1174.0 - 2023-06-05
  • 1.1173.0 - 2023-06-02
  • 1.1172.0 - 2023-06-02
  • 1.1171.0 - 2023-06-01
  • 1.1170.0 - 2023-05-31
  • 1.1169.0 - 2023-05-30
  • 1.1168.0 - 2023-05-26
  • 1.1167.0 - 2023-05-25
  • 1.1166.0 - 2023-05-25
  • 1.1165.0 - 2023-05-25
  • 1.1164.0 - 2023-05-25
  • 1.1163.0 - 2023-05-24
  • 1.1162.0 - 2023-05-23
  • 1.1161.0 - 2023-05-23
  • 1.1160.0 - 2023-05-22
  • 1.1159.0 - 2023-05-18
  • 1.1158.0 - 2023-05-17
  • 1.1157.0 - 2023-05-17
  • 1.1156.0 - 2023-05-16
  • 1.1155.0 - 2023-05-12
  • 1.1154.0 - 2023-05-10
  • 1.1153.0 - 2023-05-08
  • 1.1152.0 - 2023-05-04
  • 1.1151.0 - 2023-05-04
  • 1.1150.0 - 2023-04-28
  • 1.1149.0 - 2023-04-28
  • 1.1148.0 - 2023-04-28
  • 1.1147.0 - 2023-04-27
  • 1.1146.0 - 2023-04-25
  • 1.1145.0 - 2023-04-25
  • 1.1144.0 - 2023-04-24
  • 1.1143.0 - 2023-04-18
  • 1.1142.0 - 2023-04-12
  • 1.1141.0 - 2023-04-12
  • 1.1140.0 - 2023-04-05
  • 1.1139.0 - 2023-04-04
  • 1.1138.0 - 2023-04-04
  • 1.1137.0 - 2023-04-03
  • 1.1136.0 - 2023-04-03
  • 1.1135.0 - 2023-04-03
  • 1.1134.0 - 2023-04-03
  • 1.1133.0 - 2023-03-31
  • 1.1132.0 - 2023-03-31
  • 1.1131.0 - 2023-03-30
  • 1.1130.0 - 2023-03-29
  • 1.1129.0 - 2023-03-28
  • 1.1128.0 - 2023-03-27
  • 1.1127.0 - 2023-03-24
  • 1.1126.0 - 2023-03-23
  • 1.1125.0 - 2023-03-22
  • 1.1124.0 - 2023-03-22
  • 1.1123.0 - 2023-03-21
  • 1.1122.0 - 2023-03-20
  • 1.1121.0 - 2023-03-17
  • 1.1120.0 - 2023-03-17
  • 1.1119.0 - 2023-03-16
  • 1.1118.0 - 2023-03-13
  • 1.1117.0 - 2023-03-10
  • 1.1116.0 - 2023-03-09
  • 1.1115.0 - 2023-03-08
  • 1.1114.0 - 2023-03-06
  • 1.1113.0 - 2023-03-06
  • 1.1112.0 - 2023-03-06
  • 1.1111.0 - 2023-03-02
  • 1.1110.0 - 2023-02-28
  • 1.1109.0 - 2023-02-24
  • 1.1108.0 - 2023-02-21
  • 1.1107.0 - 2023-02-21
  • 1.1106.0 - 2023-02-20
  • 1.1105.0 - 2023-02-16
  • 1.1104.0 - 2023-02-15
  • 1.1103.0 - 2023-02-13
  • 1.1102.0 - 2023-02-13
  • 1.1101.0 - 2023-02-13
  • 1.1100.0 - 2023-02-08
  • 1.1099.0 - 2023-02-08
  • 1.1098.0 - 2023-02-08
  • 1.1097.0 - 2023-02-06
  • 1.1096.0 - 2023-02-03
  • 1.1095.0 - 2023-02-02
  • 1.1094.0 - 2023-02-01
  • 1.1093.0 - 2023-01-31
  • 1.1092.0 - 2023-01-30
  • 1.1091.0 - 2023-01-26
  • 1.1090.0 - 2023-01-24
  • 1.1089.0 - 2023-01-23
  • 1.1088.0 - 2023-01-20
  • 1.1087.0 - 2023-01-12
  • 1.1086.0 - 2023-01-12
  • 1.1085.0 - 2023-01-11
  • 1.1084.0 - 2023-01-11
  • 1.1083.0 - 2023-01-11
  • 1.1082.0 - 2023-01-08
  • 1.1081.0 - 2023-01-03
  • 1.1080.0 - 2022-12-29
  • 1.1079.0 - 2022-12-28
  • 1.1078.0 - 2022-12-28
  • 1.1077.0 - 2022-12-27
  • 1.1076.0 - 2022-12-22
  • 1.1075.0 - 2022-12-22
  • 1.1074.0 - 2022-12-21
  • 1.1073.0 - 2022-12-20
  • 1.1072.0 - 2022-12-20
  • 1.1071.0 - 2022-12-13
  • 1.1070.0 - 2022-12-13
  • 1.1069.0 - 2022-12-06
  • 1.1068.0 - 2022-12-05
  • 1.1067.0 - 2022-12-05
  • 1.1066.0 - 2022-12-02
  • 1.1065.0 - 2022-12-01
  • 1.1064.0 - 2022-11-29
  • 1.1063.0 - 2022-11-28
  • 1.1062.0 - 2022-11-28
  • 1.1061.0 - 2022-11-18
  • 1.1060.0 - 2022-11-16
  • 1.1059.0 - 2022-11-15
  • 1.1058.0 - 2022-11-11
  • 1.1057.0 - 2022-11-10
  • 1.1056.0 - 2022-11-08
  • 1.1055.0 - 2022-11-08
  • 1.1054.0 - 2022-11-07
  • 1.1053.0 - 2022-11-04
  • 1.1052.0 - 2022-11-03
  • 1.1051.0 - 2022-11-03
  • 1.1050.0 - 2022-11-03
  • 1.1049.0 - 2022-11-02
  • 1.1048.0 - 2022-11-01
  • 1.1047.0 - 2022-10-31
  • 1.1046.0 - 2022-10-31
  • 1.1045.0 - 2022-10-31
  • 1.1044.0 - 2022-10-27
  • 1.1043.0 - 2022-10-27
  • 1.1042.0 - 2022-10-26
  • 1.1041.0 - 2022-10-24
  • 1.1040.0 - 2022-10-21
  • 1.1039.0 - 2022-10-21
  • 1.1038.0 - 2022-10-20
  • 1.1037.0 - 2022-10-20
  • 1.1036.0 - 2022-10-20
  • 1.1035.0 - 2022-10-19
  • 1.1034.0 - 2022-10-18
  • 1.1033.0 - 2022-10-18
  • 1.1032.0 - 2022-10-14
  • 1.1031.0 - 2022-10-14
  • 1.1030.0 - 2022-10-14
  • 1.1029.0 - 2022-10-13
  • 1.1028.0 - 2022-10-12
  • 1.1027.0 - 2022-10-12
  • 1.1026.0 - 2022-10-10
  • 1.1025.0 - 2022-10-07
  • 1.1024.0 - 2022-10-06
  • 1.1023.0 - 2022-10-06
  • 1.1022.0 - 2022-10-05
  • 1.1021.0 - 2022-10-04
  • 1.1020.0 - 2022-10-03
  • 1.1019.0 - 2022-09-30
  • 1.1018.0 - 2022-09-30
  • 1.1017.0 - 2022-09-29
  • 1.1016.0 - 2022-09-29
  • 1.1015.0 - 2022-09-29
  • 1.1014.0 - 2022-09-28
  • 1.1013.0 - 2022-09-27
  • 1.1012.0 - 2022-09-23
  • 1.1011.0 - 2022-09-22
  • 1.1010.0 - 2022-09-22
  • 1.1009.0 - 2022-09-21
  • 1.1008.0 - 2022-09-20
  • 1.1007.0 - 2022-09-20
  • 1.1006.0 - 2022-09-15
  • 1.1005.0 - 2022-09-14
  • 1.1004.0 - 2022-09-13
  • 1.1003.0 - 2022-09-13
  • 1.1002.0 - 2022-09-12
  • 1.1001.0 - 2022-09-09
  • 1.1000.0 - 2022-09-08
  • 1.999.0 - 2022-09-07
  • 1.998.0 - 2022-09-06
  • 1.997.0 - 2022-09-02
  • 1.996.0 - 2022-09-01
  • 1.995.0 - 2022-08-31
  • 1.994.0 - 2022-08-31
  • 1.993.0 - 2022-08-29
  • 1.992.0 - 2022-08-25
  • 1.991.0 - 2022-08-23
  • 1.990.0 - 2022-08-22
  • 1.989.0 - 2022-08-19
  • 1.988.0 - 2022-08-17
  • 1.987.0 - 2022-08-15
  • 1.986.0 - 2022-08-11
  • 1.985.0 - 2022-08-10
  • 1.984.0 - 2022-08-04
  • 1.983.0 - 2022-08-04
  • 1.982.0 - 2022-08-02
  • 1.981.0 - 2022-07-25
  • 1.980.0 - 2022-07-22
  • 1.979.0 - 2022-07-21
  • 1.978.0 - 2022-07-20
  • 1.977.0 - 2022-07-20
  • 1.976.0 - 2022-07-19
  • 1.975.0 - 2022-07-19
  • 1.974.0 - 2022-07-18
  • 1.973.0 - 2022-07-15
  • 1.972.0 - 2022-07-13
  • 1.971.0 - 2022-07-12
  • 1.970.0 - 2022-07-12
  • 1.969.0 - 2022-07-11
  • 1.968.0 - 2022-07-11
  • 1.967.0 - 2022-07-11
  • 1.966.0 - 2022-07-08
  • 1.965.0 - 2022-07-07
  • 1.964.0 - 2022-07-07
  • 1.963.0 - 2022-07-04
  • 1.962.0 - 2022-07-03
  • 1.961.0 - 2022-06-28
  • 1.960.0 - 2022-06-28
  • 1.959.0 - 2022-06-28
  • 1.958.0 - 2022-06-23
  • 1.957.0 - 2022-06-23
  • 1.956.0 - 2022-06-22
  • 1.955.0 - 2022-06-22
  • 1.954.0 - 2022-06-20
  • 1.953.0 - 2022-06-17
  • 1.952.0 - 2022-06-16
  • 1.951.0 - 2022-06-15
  • 1.950.0 - 2022-06-14
  • 1.949.0 - 2022-06-13
  • 1.948.0 - 2022-06-13
  • 1.947.0 - 2022-06-07
  • 1.946.0 - 2022-06-02
  • 1.945.0 - 2022-05-31
  • 1.944.0 - 2022-05-31
  • 1.943.0 - 2022-05-31
  • 1.942.0 - 2022-05-30
  • 1.941.0 - 2022-05-30
  • 1.940.0 - 2022-05-26
  • 1.939.0 - 2022-05-25
  • 1.938.0 - 2022-05-25
  • 1.937.0 - 2022-05-25
  • 1.936.0 - 2022-05-23
  • 1.935.0 - 2022-05-20
  • 1.934.0 - 2022-05-19
  • 1.933.0 - 2022-05-19
  • 1.932.0 - 2022-05-18
  • 1.931.0 - 2022-05-13
  • 1.930.0 - 2022-05-13
  • 1.929.0 - 2022-05-13
  • 1.928.0 - 2022-05-12
  • 1.927.0 - 2022-05-11
  • 1.926.0 - 2022-05-11
  • 1.925.0 - 2022-05-10
  • 1.924.0 - 2022-05-09
  • 1.923.0 - 2022-05-09
  • 1.922.0 - 2022-05-06
  • 1.921.0 - 2022-05-05
  • 1.920.0 - 2022-05-05
  • 1.919.0 - 2022-05-05
  • 1.918.0 - 2022-05-04
  • 1.917.0 - 2022-05-03
  • 1.916.0 - 2022-05-03
  • 1.915.0 - 2022-05-01
  • 1.914.0 - 2022-04-27
  • 1.913.0 - 2022-04-26
  • 1.912.0 - 2022-04-22
  • 1.911.0 - 2022-04-22
  • 1.910.0 - 2022-04-21
  • 1.909.0 - 2022-04-21
  • 1.908.0 - 2022-04-19
  • 1.907.0 - 2022-04-17
  • 1.906.0 - 2022-04-14
  • 1.905.0 - 2022-04-13
  • 1.904.0 - 2022-04-12
  • 1.903.0 - 2022-04-12
  • 1.902.0 - 2022-04-11
  • 1.901.0 - 2022-04-11
  • 1.900.0 - 2022-04-08
  • 1.899.0 - 2022-04-08
  • 1.898.0 - 2022-04-07

@danielvwork

Copy link
Copy Markdown
Author

Merge Risk: High

This is a very large major version upgrade for the Snyk CLI, spanning over a thousand releases and several years. Due to the significant time and version gap, this upgrade is considered high-risk and will likely introduce breaking changes to CI/CD pipelines and local development workflows.

Key Breaking Changes & Considerations:

  • Linux Environment Requirements: Effective from version 1.1298.0, the minimum required GNU C Library (glibc) version was increased for Linux environments. This is a critical change that could break builds on older Linux distributions.
  • Default Authentication Method: Starting with version 1.1293.0, the CLI defaults to OAuth 2.0 for authentication, which is a change from the previous token-based method. Scripts and integrations relying on the old authentication flow may fail and require updates.
  • End-of-Support: The starting version 1.278.1 is significantly outdated and falls outside of Snyk's 12-month support policy for CLI versions.
  • Configuration Changes: A new snyk config environment command was introduced for a more consistent way to configure API endpoints, which may affect setups for on-premise or regional instances.

Recommendation:
Given the scale of this upgrade, it is crucial to thoroughly test all Snyk CLI commands used in your workflows. Pay special attention to authentication methods in CI/CD pipelines and the compatibility of your Linux build environments. Reviewing the release notes on GitHub is strongly recommended to understand the hundreds of features, fixes, and minor changes introduced between these versions.

Source: Snyk CLI GitHub Releases

Notice 🤖: This content was augmented using artificial intelligence. AI-generated content may contain errors and should be reviewed for accuracy before use.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants