-
Notifications
You must be signed in to change notification settings - Fork 2.5k
Issues: aquasecurity/trivy
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Author
Label
Projects
Milestones
Assignee
Sort
Issues list
bug(vex): Panic on scanning images with absent vex attestations.
kind/bug
Categorizes issue or PR as related to a bug.
enhancement(license): improve work with custom classification of licenses from config file
scan/license
Issues relating to license scanning
feat(misconf): Add long-id for checks into AVD
kind/documentation
Categorizes issue or PR as related to documentation.
kind/feature
Categorizes issue or PR as related to a new feature.
scan/misconfiguration
Issues relating to misconfiguration scanning
feat(checks): Add S3 checks for less permissive buckets
kind/feature
Categorizes issue or PR as related to a new feature.
scan/misconfiguration
Issues relating to misconfiguration scanning
feat(nodejs): add a bun.lock analyzer
kind/feature
Categorizes issue or PR as related to a new feature.
#8840
opened May 7, 2025 by
knqyf263
feat(nodejs): add a bun.lock parser
kind/feature
Categorizes issue or PR as related to a new feature.
#8839
opened May 7, 2025 by
knqyf263
bug(misconf): Handle resources where pattern evaluation can return an unknown value
kind/bug
Categorizes issue or PR as related to a bug.
fix(deps): treat packages with same version but different dependencies as separate packages
kind/bug
Categorizes issue or PR as related to a bug.
#8776
opened Apr 25, 2025 by
knqyf263
feat(checks): Improve AVD-AWS-0345
kind/feature
Categorizes issue or PR as related to a new feature.
scan/misconfiguration
Issues relating to misconfiguration scanning
feat(cli): Capture some basic information during the update check
kind/feature
Categorizes issue or PR as related to a new feature.
#8732
opened Apr 14, 2025 by
owenrumney
feat(misconf): Adding support for detecting misconfigurations in docker-compose.yml natively
kind/feature
Categorizes issue or PR as related to a new feature.
scan/misconfiguration
Issues relating to misconfiguration scanning
#8729
opened Apr 12, 2025 by
simar7
feat(checks): Add checks to detect suspicious Kubernetes URL annotations
kind/feature
Categorizes issue or PR as related to a new feature.
target/kubernetes
Issues relating to kubernetes cluster scanning
bug: trivy convert always filters non-failures
kind/bug
Categorizes issue or PR as related to a bug.
feat(misconf): Add minimum supported version
kind/feature
Categorizes issue or PR as related to a new feature.
scan/misconfiguration
Issues relating to misconfiguration scanning
bug(sbom): Categorizes issue or PR as related to a bug.
scan/sbom
Issues relating to SBOM
sbom
mode should support --distro
flag
kind/bug
bug(report): Trivy panics when converting json report without Categorizes issue or PR as related to a bug.
Packages
to table report with summary table
kind/bug
#8622
opened Mar 27, 2025 by
DmitriyLewen
feat(k8s): improve k8s scanning to handle namespace-restricted controllers
kind/feature
Categorizes issue or PR as related to a new feature.
target/kubernetes
Issues relating to kubernetes cluster scanning
feat(cli): Add new version checking
kind/feature
Categorizes issue or PR as related to a new feature.
#8552
opened Mar 14, 2025 by
owenrumney
bug(k8s): trivy k8s scan throws panic: runtime error: slice bounds out of range error
kind/bug
Categorizes issue or PR as related to a bug.
feat(license): scan Denotes an issue ready for a new contributor, according to the "help wanted" guidelines.
help wanted
Denotes an issue that needs help from a contributor. Must meet "help wanted" guidelines.
scan/license
Issues relating to license scanning
vendor
directory for license for go.mod
files
good first issue
#8527
opened Mar 11, 2025 by
DmitriyLewen
bug(sbom): Trivy only checks parents from the current result when plotting the dependency graph
kind/bug
Categorizes issue or PR as related to a bug.
scan/sbom
Issues relating to SBOM
#8516
opened Mar 10, 2025 by
DmitriyLewen
docs: add explanation for how to use non-system certificates
good first issue
Denotes an issue ready for a new contributor, according to the "help wanted" guidelines.
kind/documentation
Categorizes issue or PR as related to documentation.
#8440
opened Feb 24, 2025 by
knqyf263
feat(flag): resolve env's from config file
kind/feature
Categorizes issue or PR as related to a new feature.
#8436
opened Feb 24, 2025 by
DmitriyLewen
feat(opensuse): add Denotes an issue that needs help from a contributor. Must meet "help wanted" guidelines.
scan/vulnerability
Issues relating to vulnerability scanning
MicroOS
and Leap Micro
support
help wanted
#8409
opened Feb 17, 2025 by
DmitriyLewen
Previous Next
ProTip!
Find all open issues with in progress development work with linked:pr.