diff --git a/.github/dependabot.yml b/.github/dependabot.yml index 1f5b2152..dbe82d23 100644 --- a/.github/dependabot.yml +++ b/.github/dependabot.yml @@ -16,3 +16,8 @@ updates: update-types: - "minor" - "patch" + exclude-patterns: + # go-diskfs 1.8 broke API wrt 1.7 which is in use by syft + # at the time of writing + # keep until https://github.com/anchore/syft/pull/4719 is merged or issue resolved. + - "github.com/diskfs/go-diskfs" diff --git a/scripts/.util/tools.json b/scripts/.util/tools.json index ac0a53f0..7eb69ce0 100644 --- a/scripts/.util/tools.json +++ b/scripts/.util/tools.json @@ -1,6 +1,6 @@ { "createpackage": "v1.73.0", - "jam": "v2.15.3", + "jam": "v2.17.1", "libpaktools": "v0.3.0", "pack": "v0.40.2" }