Thanks to visit codestin.com
Credit goes to github.com

Skip to content

The logs showed 4 vulnerabilities, but the final report only had 2. #1360

@lyzhang1999

Description

@lyzhang1999

What happened:
The logs showed 4 vulnerabilities, but the final report only had 2.
What you expected to happen:
report all 4 vulnerabilities
How to reproduce it (as minimally and precisely as possible):

Anything else we need to know?:

> grype sbom:./sbom.json
 ✔ Vulnerability DB        [no update available]
 ✔ Scanning image...       [4 vulnerabilities]
   ├── 0 critical, 3 high, 1 medium, 0 low, 0 negligible
   └── 0 fixed

NAME     INSTALLED  FIXED-IN  TYPE  VULNERABILITY   SEVERITY 
busybox  1.35.0                     CVE-2022-28391  High      
busybox  1.35.0                     CVE-2022-30065  High

Environment:

  • Output of grype version:0.63.0
  • OS (e.g: cat /etc/os-release or similar): macOS 13.4

Metadata

Metadata

Assignees

No one assigned

    Labels

    bugSomething isn't working

    Type

    No type

    Projects

    Status

    Done

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions