-
Notifications
You must be signed in to change notification settings - Fork 473
aquasecurity trivy Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
Discussions
-
You must be logged in to vote 📖 Update supported package managers for
kind/documentation--include-dev-depsflagCategorizes issue or PR as related to documentation. -
You must be logged in to vote 🙏 [Java/Maven] Filesystem scan runs into 429 - Too many requests
scan/vulnerabilityIssues relating to vulnerability scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 🐛 Filesystem scan ignores all pnpm dependencies if
kind/bugpnpm-lock.yamlcontains multiple YAML documentsCategorizes issue or PR as related to a bug. -
You must be logged in to vote 💡 Expose nested Terraform blocks in terraform-raw input
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🐛 Bad CVE URLs generated
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🐛 Lots of CVEs not detected
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 👨💻 Detect Ubuntu 26.04 LTS as a supported OS
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 💡 feat(secret): add detection rules for AI & Vector Database API keys
kind/featureCategorizes issue or PR as related to a new feature. scan/secretIssues relating to secret scanning target/repositoryIssues relating to VCS repository scanning -
You must be logged in to vote 🙏 Dev for trivy-azure-pipelines-task?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🐛 Incorrect component hash for jars repackaged in Spring Boot app
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🙏 CycloneDX export of redhat/ubi10-minimal produces cyclic dependencies
target/container-imageIssues relating to container image scanning -
You must be logged in to vote 💡 Allow selecting older CycloneDX spec versions when generating BOMs
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 🙏 Trivy wrongly flagging positive alerts to CVEs in the fixed version of Go library.
scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 Wrong jar Version detected in Docker Image for hibernate-models-1.1.1
scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 Is it intentional that unreviewed vulnerabilities from GitHub Advisory Database are reported on?
scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 👨💻 -
You must be logged in to vote 💡 Adding EPSS and KEV databases
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 👨💻 Proposal: scan contents of archives during fs/image scans
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 📢 BREAKING CHANGE: Starting with v0.72.0, APT repository publishes deb packages only to the
kind/breakinggenericdistributionCategorizes issue or PR as related to breaking compatibility. -
You must be logged in to vote 🐛 golang binary version parsing fails if GOEXPERIMENT was enabled
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🙏 Can trivy generate deterministic json?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 📢 BREAKING CHANGE: Starting with v0.72.0, releases no longer publish architecture-specific image tags
kind/breakingCategorizes issue or PR as related to breaking compatibility. -
You must be logged in to vote 🐛 Trivy doesn't work on arm v7
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🐛 Non-deterministic SrcName for OS subpackages when image contains per-package SBOMs (Chainguard/Wolfi /var/lib/db/sbom/*.spdx.json)
kind/bugCategorizes issue or PR as related to a bug.