Skip to content

Latest commit

 

History

History
25 lines (16 loc) · 851 Bytes

find-container-vulnerabilities-using-docker-scout.md

File metadata and controls

25 lines (16 loc) · 851 Bytes

Find Container Vulnerabilities Using Docker Scout

Category: Docker

Docker Scout is a tool that can be used to find potential vulnerabilities in containers. It creates an SBOM for image layers and checks for known vulnerabilities against CVE databases.

To view a summary of vulnerabilities in a container image called redis/redis-stack:latest use the following command:

docker scout quickview redis/redis-stack:latest

To list vulnerabilities showing CVE scores, use the cves parameter:

docker scout cves redis/redis-stack:latest

To view base image update recommendations, use the recommendations parameter:

docker scout recommendations redis/redis-stack:latest

Note: Docker Scout is free for up to 3 repositories. Usage beyond that requires signing up to a subscription with Docker, Inc.