v0.70.0
2026-04-17T08:51:59Z•032b5be25f45ebd71745a10e9ebed4e26a1cbb93593abbae40340c69a9d38eaf
aqua-securitychangelogdependency-upgrademaintenancereleasetrivyvulnerability-scanner
What happened
A release feed for Aqua Security Trivy showing v0.70.0 published 2026-04-17 (primary item) with maintenance and dependency bumps. Notable changes in v0.70.0 include bumps to go.opentelemetry.io/otel/sdk (1.42.0→1.43.0) and sigstore timestamp-authority (v2: 2.0.3→2.0.6). Earlier entries list backports and dependency updates in v0.69.x and v0.68.x (e.g., go-git/v5, cloudflare/circl). The feed does not list any CVE identifiers or explicit security advisories; dependency upgrades may include upstream fixes — users should upgrade to the latest Trivy release to receive those fixes.
Why it matters
A reviewed impact interpretation has not been published for this record.
Evidence and limitations
- Source ID
- aquasecurity_trivy_releases
- Record identifier
- 032b5be25f45ebd71745a10e9ebed4e26a1cbb93593abbae40340c69a9d38eaf
- Enrichment time
- 2026-04-17T08:51:59Z
- AI-assisted enrichment
- Yes
This record may overlap with other records. Its enrichment can be incomplete or wrong, and machine assistance was used. Validate consequential decisions against the linked source and your own environment.