-
Notifications
You must be signed in to change notification settings - Fork 363
aquasecurity trivy Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
Discussions
-
You must be logged in to vote 🙏 how to find packagePath while scaning docker image
scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 🐛 Bug regression, file no longer in use. Prefer empty array to null CycloneDX json
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🐛 IP allow list blocks gh CLI in CI, preventing release integrity attestation
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🐛 AVD-AWS ID not mentioned in report output for avd-aws-0089, also avd-aws-0163 link dead
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 💡 detect container image liberica-runtime-container
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 👨💻 -
You must be logged in to vote 🐛
triage/supportpackage-lock.jsonwith invalidlicensearray causes the whole file to be skippedIndicates an issue that is a support question. scan/licenseIssues relating to license scanning -
You must be logged in to vote 💡 Plugin Idea: Local AI agent to summarize and prioritize Trivy scan results
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 🐛 -
You must be logged in to vote 🐛 Trivy scans a library declared as "test" in a dependency module
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🐛 The result of scanning sbom generated by trivy seems wrong
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 👨💻 -
You must be logged in to vote 💡 Supply expected checksum to contrib/install.sh
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 feat(secret): add detection rules for AI & Vector Database API keys
kind/featureCategorizes issue or PR as related to a new feature. scan/secretIssues relating to secret scanning target/repositoryIssues relating to VCS repository scanning -
You must be logged in to vote 🐛 Trivy does not detect vulnerabilities on ubuntu kernel
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🐛 [pom] settings.xml <servers> credentials not used when fetching parent POMs
kind/bugCategorizes issue or PR as related to a bug. triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Why does Trivy report far more vulnerabilities than Vuls when scanning the same Linux system?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🐛 Telemetry Cannot Be Disabled
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 💡 Bring .conf,.ini,virtual host files for scanning under misconfigaration scan in trivy
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 🔎 -
You must be logged in to vote 📖 Document CI/CD integration with RWX
kind/documentationCategorizes issue or PR as related to documentation. -
You must be logged in to vote 🐛 trivy-db is stale: vuln-list and vuln-list-* repos are not being updated
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🐛 Azure AI Foundry, OpenAI secret not detected
kind/featureCategorizes issue or PR as related to a new feature. scan/secretIssues relating to secret scanning -
You must be logged in to vote 🐛 Support scanning local block devices with trivy vm
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🙏 Node.JS
triage/supportpackage.jsonparser rejects valid names with slashes (e.g. "rxjs/ajax")Indicates an issue that is a support question.