-
Notifications
You must be signed in to change notification settings - Fork 2.8k
aquasecurity trivy Q-a Discussions
Pinned Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
🙏 Q&A Discussions
Ask the community for help
-
You must be logged in to vote 🙏 trivy does not manage VEX attestation as expected with option --vex oci
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 Override built-in check severity
triage/supportIndicates an issue that is a support question. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🙏 Why is
triage/supportcomponent.evidence.occurrences.locationnot populated in CycloneDX SBOMs?Indicates an issue that is a support question. -
You must be logged in to vote 🙏
triage/supportdownloadLocationis almost always NONE in SPDX formatIndicates an issue that is a support question. -
You must be logged in to vote 🙏 -
You must be logged in to vote 🙏 Multiple CVEs reported in Trivy 0.67.2 - are any exploitable?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Error "semaphore acquire: context deadline exceeded" when running Trivy fs scan on WildFly repository
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Ignoring misconfigurations for specific K8s resources
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 CycloneDX SBOM components > scope field
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Is trivy fs --list-all-pkgs suppose to show excluded transitive vulnerabilities?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Unable to ignore OS packages by name
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Terraform raw and json schema examples
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Need support with severity selection
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 How to scan a single fat jar file
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 false detection in alpine latest docker images
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 Recently released etcd v3.4.38 gives a false positive
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 start scan without internet connection
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 trivy scan prints different results on simultaneous scans
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Trivy doesn't detect open CVEs for conan (1) dependencies (for example related to
triage/supportpcre2)Indicates an issue that is a support question. -
You must be logged in to vote 🙏 Vendor Severity missing for findings from Go Vulnerability Database govulndb
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 bug: Java DB update is required when generating SBOMs of images containing Java packages
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Why trivy can't detect vuls when python requirements.txt files use '>=' to specify package version?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Cannot build from source
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 CVE-2025-49844 Redis vulnerability score 10.0 not detected
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 Need clarification OS Vendor vs programming langage
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning