-
Notifications
You must be signed in to change notification settings - Fork 394
aquasecurity trivy Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
Discussions
-
You must be logged in to vote 💡 Enhancement request | | Support for PEP 723 Inline Script Metadata
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 Indicate if a CVE is in the CISA KEV catalog
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 VEX SBOM Reference pointing to a private git repository
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 💡 -
You must be logged in to vote 🐛 IaC scan panics on
scan/misconfigurationgoogle_container_clusterwith unresolved variables (null cty.Value in GKE adapter)Issues relating to misconfiguration scanning bug -
You must be logged in to vote 🐛 gitlab.tpl produces trailing comma in links array when last reference(s) fail URL regex
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🙏 [Java/Maven] Filesystem scan runs into 429 - Too many requests
scan/vulnerabilityIssues relating to vulnerability scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 🐛 Intermittent Installing Trivy 0.70.0
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 💡 feat: make fs cache flock timeout configurable
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 📖 Document CI/CD integration with RWX
kind/documentationCategorizes issue or PR as related to documentation. -
You must be logged in to vote 🙏 how to find packagePath while scaning docker image
scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 🙏 oras attached VEX attestation not found by Trivy
scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 🐛
triage/supportpackage-lock.jsonwith invalidlicensearray causes the whole file to be skippedIndicates an issue that is a support question. scan/licenseIssues relating to license scanning -
You must be logged in to vote 🐛 trivy should support pom.xml written the CI friendly way with no warning
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 💡 Trivy scanner should detect Chiselled Ubuntu images and installed packages
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 💡 Add analyzer for Chisel manifests
kind/featureCategorizes issue or PR as related to a new feature. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🔎 GIT-0003 - force to use a deprecated argument
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🐛 Support CycloneDX 1.7 SBOMs
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 💡 AI code review for the Trivy repo, would the maintainers be interested?
kind/featureCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 💡 Add support for
kind/featurepixiinstallations withpixi.lockfiles andpyproject.tomlorpixi.tomlCategorizes issue or PR as related to a new feature. -
You must be logged in to vote 🐛 VEX of OS level packages is inconsistent due to how their dependency tree is generated
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🐛 Different result for VEX between SBOM and image scanning
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🐛 Bug regression, file no longer in use. Prefer empty array to null CycloneDX json
kind/bugCategorizes issue or PR as related to a bug. -
You must be logged in to vote 🐛 [pom] settings.xml <servers> credentials not used when fetching parent POMs
kind/bugCategorizes issue or PR as related to a bug. triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🐛 IP allow list blocks gh CLI in CI, preventing release integrity attestation
kind/bugCategorizes issue or PR as related to a bug.