Skip to content

chore(deps, embedded-cpp): update ms-vscode.cpptools, sonarsource.sonarlint-vscode in devcontainer.json - #1414

Open
philips-software-forest-releaser[bot] wants to merge 1 commit into
mainfrom
feature/amp-devcontainer-embedded-cpp/update-vscode-extensions-devcontainer.json
Open

chore(deps, embedded-cpp): update ms-vscode.cpptools, sonarsource.sonarlint-vscode in devcontainer.json#1414
philips-software-forest-releaser[bot] wants to merge 1 commit into
mainfrom
feature/amp-devcontainer-embedded-cpp/update-vscode-extensions-devcontainer.json

Conversation

@philips-software-forest-releaser

@philips-software-forest-releaser philips-software-forest-releaser Bot commented Aug 9, 2026

Copy link
Copy Markdown
Contributor

Note

Before merging this PR, please conduct a manual test checking basic functionality of the updated plug-ins. There are limited automated tests for the VS Code Extension updates.

Updates sonarsource.sonarlint-vscode from 5.6.0 to 5.8.1

Release notes

For full release notes, see JIRA

For full release notes, see JIRA

For full release notes, see JIRA

Updates ms-vscode.cpptools from 1.32.2 to 1.33.8

Release notes

Instructions

The extension can be obtained by one of the methods below:

  • Install the "C/C++" or "C/C++ Extension Pack" extension published by Microsoft from the Extensions view in VS Code.
  • Download a vsix that matches your OS from the Assets section below (and install it via the method mentioned above). The previous download methods have the vsix signatures verified by the Marketplace, but for this method, you can do the verification by downloading the matching manifest and signature.p7s file and running npx [at]vscode/vsce@latest verify-signature -i <.vsix> -m <.signature.manifest> -s <.signature.p7s> vscode-vsce#1044.

Requirements

  • VS Code 1.77.0 or later (March 2023).
  • Windows 10+ (x64, arm64), macOS 10.13+, Linux (Ubuntu 16+, etc.).
    • Debugging is not supported on CentOS 7 or RHEL 7. The last supported version was 1.22.11: #13219.
    • The last supported version for Windows 7 and 8 was 1.30.5.

Changes

New Feature

  • Unification of tag parsing with the VS implementation. In particular, it's now done using multiple parallel cpptools-srv2 processes. PR #14426

Enhancements

  • Allow platform overrides in cppbuild tasks. #11601
  • Add the debuginfod launch option to the cppdbg debugger schema. #14458, #14460, PR #14471, PR #14506, MIEngine#1562
  • Add the ignoreRunWithoutDebuggingWarnings property to allow 'Run without debugging' warnings to be suppressed. #14515

Bug Fixes

  • Fix the wording for the #include errors detected message. #8227
  • Fix an incorrect invalid type conversion IntelliSense error. #11294
  • Fix include completion (with recursive includes) still suggesting headers from a deleted folder. #12636
  • Fix a spurious recursive includes (**) debug console log warning for paths merged from c_cpp_properties.json when C_Cpp.mergeConfigurations is enabled. #14125
  • Fix 'Find All References' dropping valid references when a template parameter type has a typedef alias in only one translation unit. #14344
  • Fix the remote process picker ps command not working with some shells. #14442
  • Fix a spurious IntelliSense error with class template argument deduction (CTAD). #14453, #14459, #14504
  • Add important to C_Cpp.doxygen.sectionTags. PR #14473
  • Update the minimum supported VS Code version to 1.77. PR #14502
  • Fix issues with the debugger launch.json schema. PR #14523
  • Fix [[no_unique_address]] empty-base layout sizeof being computed too large. #14524
  • Fix ${env:VAR} and ${env.VAR} not expanding to an empty string when the environment variable is unset, to match VS Code's behavior. PR #14535
  • Fix C/C++ debug data-tips on members of a dereferenced expression. PR #14540
    • Thanks for the contribution. @tieo
  • Fix Windows backslash paths being mangled when adding an SSH target. PR #14554
  • Fix 'Run C/C++ File' not running the program in PowerShell when terminal shell integration is unavailable. #14583
  • Fix the build tools walkthrough for Visual Studio 2026. PR #14589
  • Fix custom configurations being discarded when C_Cpp.mergeConfigurations is enabled and a provider supplies the file uri as a vscode.Uri. #14621
  • Fix a tag parser crash when a UTF-8 string literal is concatenated with a narrow string literal containing an invalid multibyte sequence.
  • Fix IntelliSense incorrectly resolving #include files through a symbolic link after the target directory was deleted from disk.
  • Fix potential browse database corruption when the same workspace is opened by multiple processes on Linux and macOS.
  • Fix crashes when reading files saved in certain multibyte encodings such as GB18030 or EUC-JP.
  • Fix empty database folders being created in every folder of a multi-root workspace.
  • Fix the C_Cpp.refactoring.includeHeader setting not honoring always.
  • Fix spurious IntelliSense error on std::variant brace-initialization.
  • Fix several potential deadlocks and data races in the language server.
  • Fix an incorrect file path in an error message on Windows.
  • Reduce memory usage to help avoid out-of-memory crashes.
  • Fix stale diagnostics after editing visible headers.
  • Fix several crashes in the recursive include cache.
  • Fix an incorrect #include casing error on Linux.
  • Various other fixes found internally.
  • Various localization updates.
  • Fix an IntelliSense crash.
  • Update dependencies.

Instructions

The extension can be obtained by one of the methods below:

  • Install the "C/C++" or "C/C++ Extension Pack" extension published by Microsoft from the Extensions view in VS Code.
  • Download a vsix that matches your OS from the Assets section below (and install it via the method mentioned above). The previous download methods have the vsix signatures verified by the Marketplace, but for this method, you can do the verification by downloading the matching manifest and signature.p7s file and running npx [at]vscode/vsce@latest verify-signature -i <.vsix> -m <.signature.manifest> -s <.signature.p7s> vscode-vsce#1044.

Requirements

  • VS Code 1.67.0 or later (April 2022).
  • Windows 10+ (x64, arm64), macOS 10.12+, Linux (Ubuntu 16+, etc.).
    • Debugging is not supported on CentOS 7 or RHEL 7. The last supported version was 1.22.11: #13219.
    • The last supported version for Windows 7 and 8 was 1.30.5.

Changes

New Feature

  • Add support for "Run without debugging". #1201

Enhancements

  • Add a C_Cpp.doxygen.generateOnCodeAction setting to allow disabling of Doxygen generation code actions. #14341
  • Add a cpptools.waitForTagParsing command (for use by the C/C++ DevTools extension). PR #14407
  • Improve wildcard matching with the debugger natvis. MIEngine#1162
  • Add support for HideRawView with the debugger natvis. MIEngine#1458

Bug Fixes

  • Fix high CPU usage caused by repeated calls to selectChatModels. #14168, #14211, #14241
  • Fix the MSVC developer environment not working if UCRTVersion isn't found, and update the walkthrough instructions for installing MSVC. #14352
  • Fix an IntelliSense crash when three special-case comments are used in a template. #14360
  • Fix Copilot hover taking too many premium requests. #14372
  • Fix null pointers being expandable for variables in the debugger. MIEngine#698
  • Fix recursive {this} evaluation with the debugger natvis. MIEngine#1391
  • Update clang-tidy and clang-format from 22.1.1 to 22.1.3 (bug fixes).
  • Fix a bug with semantic colorization of operators.

@philips-software-forest-releaser philips-software-forest-releaser Bot added the dependencies Pull requests that update a dependency file label Aug 9, 2026
@philips-software-forest-releaser
philips-software-forest-releaser Bot requested a review from a team as a code owner August 9, 2026 03:09
@github-actions

github-actions Bot commented Aug 9, 2026

Copy link
Copy Markdown
Contributor

Test Results

 24 files   - 1   24 suites   - 1   16m 43s ⏱️ - 3m 15s
 47 tests  - 1   47 ✅  - 1  0 💤 ±0  0 ❌ ±0 
208 runs   - 1  208 ✅  - 1  0 💤 ±0  0 ❌ ±0 

Results for commit 8d76e8a. ± Comparison against base commit 591db7c.

♻️ This comment has been updated with latest results.

@github-actions

github-actions Bot commented Aug 9, 2026

Copy link
Copy Markdown
Contributor

⚠️MegaLinter analysis: Success with warnings

Descriptor Linter Files Fixed Errors Warnings Elapsed time
✅ ACTION actionlint 23 0 0 0.35s
✅ DOCKERFILE hadolint 4 0 0 0.33s
✅ JSON npm-package-json-lint yes no no 0.54s
✅ JSON prettier 45 8 0 0 0.94s
✅ JSON v8r 45 0 0 18.87s
✅ MARKDOWN markdownlint 13 0 0 0 1.29s
✅ MARKDOWN markdown-table-formatter 13 0 0 0 0.28s
✅ REPOSITORY betterleaks yes no no 1.4s
✅ REPOSITORY checkov yes no no 29.59s
✅ REPOSITORY gitleaks yes no no 1.23s
✅ REPOSITORY git_diff yes no no 0.01s
✅ REPOSITORY grype yes no no 76.51s
⚠️ REPOSITORY osv-scanner yes 2 no 0.71s
✅ REPOSITORY secretlint yes no no 2.32s
✅ REPOSITORY syft yes no no 2.67s
✅ REPOSITORY trivy yes no no 12.83s
✅ REPOSITORY trivy-sbom yes no no 1.08s
✅ REPOSITORY trufflehog yes no no 6.06s
⚠️ SPELL lychee 117 1 0 11.5s
✅ YAML prettier 36 0 0 0 1.36s
✅ YAML v8r 36 0 0 16.39s
✅ YAML yamllint 36 0 0 1.32s

Detailed Issues

⚠️ SPELL / lychee - 1 error
📝 Summary
---------------------
🔍 Total..........154
🔗 Unique.........126
✅ Successful.....148
⏳ Timeouts.........0
🔀 Redirected......19
👻 Excluded.........0
❓ Unknown..........0
🚫 Errors...........1
⛔ Unsupported......1

Errors in .github/TOOL_VERSION_ISSUE_TEMPLATE.md
[403] https://developer.arm.com/downloads/-/arm-gnu-toolchain-downloads (at 38:7) | Rejected status code: 403 Forbidden

Hint: Followed 19 redirects. You might want to consider replacing redirecting URLs with the resolved URLs. Use verbose mode (`-v`/`-vv`) to see redirection details.
Hint: You can configure accepted/rejected response codes with `-a` or `--accept`
⚠️ REPOSITORY / osv-scanner - 2 errors
Scanning dir .
Starting filesystem walk for root: /
Scanned package-lock.json file and found 73 packages
Scanned test/rust/workspace/cargo/Cargo.lock file and found 1 package
Scanned test/rust/workspace/test/Cargo.lock file and found 1 package
Scanned test/rust/workspace/clippy/Cargo.lock file and found 1 package
Scanned test/embedded-rust/workspace/cortex-mf/Cargo.lock file and found 20 packages
Scanned test/embedded-rust/workspace/cortex-m/Cargo.lock file and found 20 packages
Scanned .devcontainer/docs/requirements.txt file and found 14 packages
Scanned .devcontainer/cpp/requirements.txt file and found 20 packages
End status: 141 dirs visited, 493 inodes visited, 8 Extract calls, 46.408753ms elapsed, 46.408913ms wall time

Total 3 packages affected by 4 known vulnerabilities (0 Critical, 2 High, 0 Medium, 0 Low, 2 Unknown) from 2 ecosystems.
2 vulnerabilities can be fixed.

+-------------------------------------+------+-----------+-----------------------+---------+---------------+---------------------------------------------------+
| OSV URL                             | CVSS | ECOSYSTEM | PACKAGE               | VERSION | FIXED VERSION | SOURCE                                            |
+-------------------------------------+------+-----------+-----------------------+---------+---------------+---------------------------------------------------+
| https://osv.dev/RUSTSEC-2026-0110   |      | crates.io | bare-metal            | 0.2.5   | --            | test/embedded-rust/workspace/cortex-m/Cargo.lock  |
| https://osv.dev/RUSTSEC-2026-0110   |      | crates.io | bare-metal            | 0.2.5   | --            | test/embedded-rust/workspace/cortex-mf/Cargo.lock |
| https://osv.dev/GHSA-mh99-v99m-4gvg | 7.5  | npm       | brace-expansion (dev) | 5.0.7   | 5.0.8         | package-lock.json                                 |
| https://osv.dev/GHSA-rgw5-rvv9-x895 | 7.5  | npm       | brace-expansion (dev) | 5.0.7   | 5.0.9         | package-lock.json                                 |
+-------------------------------------+------+-----------+-----------------------+---------+---------------+---------------------------------------------------+

Notices

📣 MegaLinter 9.5.0 is out! Discover the new features and security recommendations in the release announcement. (Skip this info by defining SECURITY_SUGGESTIONS: false)

See detailed reports in MegaLinter artifacts

You could have the same capabilities but better runtime performances if you use a MegaLinter flavor:

Your project could benefit from a custom flavor, which would allow you to run only the linters you need, and thus improve runtime performances. (Skip this info by defining FLAVOR_SUGGESTIONS: false)

  • Documentation: Custom Flavors
  • Command: npx mega-linter-runner@9.6.0 --custom-flavor-setup --custom-flavor-linters ACTION_ACTIONLINT,DOCKERFILE_HADOLINT,JSON_V8R,JSON_PRETTIER,JSON_NPM_PACKAGE_JSON_LINT,MARKDOWN_MARKDOWNLINT,MARKDOWN_MARKDOWN_TABLE_FORMATTER,REPOSITORY_CHECKOV,REPOSITORY_GIT_DIFF,REPOSITORY_GITLEAKS,REPOSITORY_BETTERLEAKS,REPOSITORY_GRYPE,REPOSITORY_OSV_SCANNER,REPOSITORY_SECRETLINT,REPOSITORY_SYFT,REPOSITORY_TRIVY,REPOSITORY_TRIVY_SBOM,REPOSITORY_TRUFFLEHOG,SPELL_LYCHEE,YAML_PRETTIER,YAML_YAMLLINT,YAML_V8R

MegaLinter is graciously provided by OX Security
Show us your support by starring ⭐ the repository

@philips-software-forest-releaser
philips-software-forest-releaser Bot force-pushed the feature/amp-devcontainer-embedded-cpp/update-vscode-extensions-devcontainer.json branch from 4462717 to 8d76e8a Compare August 23, 2026 02:51
@philips-software-forest-releaser philips-software-forest-releaser Bot changed the title chore(deps, embedded-cpp): update sonarsource.sonarlint-vscode in devcontainer.json chore(deps, embedded-cpp): update ms-vscode.cpptools, sonarsource.sonarlint-vscode in devcontainer.json Aug 23, 2026
@sonarqubecloud

Copy link
Copy Markdown

@github-actions

Copy link
Copy Markdown
Contributor

📦 Container Size Analysis

Note

Comparing ghcr.io/philips-software/amp-devcontainer-base:edgeghcr.io/philips-software/amp-devcontainer-base:pr-1414

📈 Size Comparison Table

OS/Platform Previous Current Change Trend
linux/amd64 89.03 MB 89.03 MB 1.19 kB (0%) 🔽
linux/arm64 87.07 MB 87.07 MB +480 B (+0%) 🔼

@github-actions

Copy link
Copy Markdown
Contributor

📦 Container Size Analysis

Note

Comparing ghcr.io/philips-software/amp-devcontainer-rust:edgeghcr.io/philips-software/amp-devcontainer-rust:pr-1414

📈 Size Comparison Table

OS/Platform Previous Current Change Trend
linux/amd64 444.95 MB 444.95 MB 1.26 kB (0%) 🔽
linux/arm64 394.93 MB 394.93 MB +1.51 kB (+0%) 🔼

@github-actions

Copy link
Copy Markdown
Contributor

📦 Container Size Analysis

Note

Comparing ghcr.io/philips-software/amp-devcontainer-docs:edgeghcr.io/philips-software/amp-devcontainer-docs:pr-1414

📈 Size Comparison Table

OS/Platform Previous Current Change Trend
linux/amd64 220.43 MB 220.43 MB 1.17 kB (0%) 🔽
linux/arm64 216.75 MB 216.75 MB +1.06 kB (+0%) 🔼

@github-actions

Copy link
Copy Markdown
Contributor

📦 Container Size Analysis

Note

Comparing ghcr.io/philips-software/amp-devcontainer-embedded-rust:edgeghcr.io/philips-software/amp-devcontainer-embedded-rust:pr-1414

📈 Size Comparison Table

OS/Platform Previous Current Change Trend
linux/amd64 511.63 MB 511.63 MB 1.17 kB (0%) 🔽
linux/arm64 461.31 MB 461.31 MB +575 B (+0%) 🔼

@github-actions

Copy link
Copy Markdown
Contributor

📦 Container Size Analysis

Note

Comparing ghcr.io/philips-software/amp-devcontainer-cpp:edgeghcr.io/philips-software/amp-devcontainer-cpp:pr-1414

📈 Size Comparison Table

OS/Platform Previous Current Change Trend
linux/amd64 409.14 MB 409.14 MB 939 B (0%) 🔽
linux/arm64 389.67 MB 389.67 MB +1.79 kB (+0%) 🔼

@github-actions

Copy link
Copy Markdown
Contributor

📦 Container Size Analysis

Note

Comparing ghcr.io/philips-software/amp-devcontainer-embedded-cpp:edgeghcr.io/philips-software/amp-devcontainer-embedded-cpp:pr-1414

📈 Size Comparison Table

OS/Platform Previous Current Change Trend
linux/amd64 611.32 MB 611.32 MB 879 B (0%) 🔽
linux/arm64 591.04 MB 591.04 MB +915 B (+0%) 🔼

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file vscode-extensions

Projects

None yet

Development

Successfully merging this pull request may close these issues.

0 participants