-
Notifications
You must be signed in to change notification settings - Fork 2.5k
aquasecurity trivy Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
Discussions
-
You must be logged in to vote 🐛 bug(misconf): AVD-AWS-0022 false positive
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 💡 Support for Kubernetes terraform resources
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/kubernetesIssues relating to kubernetes cluster scanning -
You must be logged in to vote 💡 ksv011 - "Enforcing CPU limits prevents DoS via resource exhaustion" - Setting cpu limit is antipattern
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/kubernetesIssues relating to kubernetes cluster scanning -
You must be logged in to vote 🐛 bug(misconf): Trivy fails to scan image history with heredoc
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 💡 Add check for apt-get clean
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 Add check for missing pipefail in Dockerfile
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 🐛 bug(misconf): unquoted merge key is not processed in YAML config files
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🐛 Empty artifactLocation in SARIF file for AVD-AZU-0013 misconfiguration check (GitHub's upload-sarif job errors)
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🐛 Both "ID" and "AVDID" fields in scan output are both set by avd_id metadata tag
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 💡 chore(k8s): enhance logging for kubernetes scan
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/kubernetesIssues relating to kubernetes cluster scanning -
You must be logged in to vote 🐛 terraform: string formatting is not correctly evaluated for wildcard resource rules
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🐛 Incorrect location of findings in k8s JSON scan
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 💡 Add support for CIS GKE Benchmark v1.6.0
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/kubernetesIssues relating to kubernetes cluster scanning -
You must be logged in to vote 💡 show misconfig ID in table view
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 💡 Show full filepaths in HTML template
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning target/filesystemIssues relating to filesystem scanning -
You must be logged in to vote 💡 Add the ability to pass start/end line values as configuration options in Misconfiguration ignorefile config
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 💡 feat(misconf) junit.tpl misses file reference
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🔎 Delete secrets Kubernetes ClusterRole warns about viewing secrets
scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 📢 BREAKING CHANGE: Flattening misconfiguration schema types
scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🐛 Trivy 0.49.0 regression: image misconfiguration incorrectly reports ds002: Specify at least 1 USER command in Dockerfile with non-root user as argument
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 💡 IAC scan to capture Azure Application Gateway insecure TLS and cryptographic algorithms allowed
kind/featureCategorizes issue or PR as related to a new feature. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🐛 undefined ref: cluster.skipfinalsnapshot.value when trivy is loading built-in policies
kind/bugCategorizes issue or PR as related to a bug. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🔎 image misconfiguration incorrect reports COPY command has more than two arguments
scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 📖 Improve documentation on custom Rego policy for 'unsupported' resources
kind/documentationCategorizes issue or PR as related to documentation. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🔎 AVD-GIT-0001 false positive
scan/misconfigurationIssues relating to misconfiguration scanning