-
Notifications
You must be signed in to change notification settings - Fork 2.8k
aquasecurity trivy Q-a Discussions
Pinned Discussions
Sort by:
Latest activity
Categories, most helpful, and community links
Categories
Community links
🙏 Q&A Discussions
Ask the community for help
-
You must be logged in to vote 🙏 Show CVSS score in table output
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 CVE not reported on older Alpine, only on newer version
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 Severity mismatch for CVE-2025-9230 between Trivy and NVD.
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Recalculating a vulnerability's Severity and CVSS score based on injected temporal/environmental metrics
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Search on Aqua Vulnerability Database is broken? Doesn't show React2Shell
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 trivy bom scanning doesn't introspect images purl ?
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning scan/sbomIssues relating to SBOM -
You must be logged in to vote 🙏 Does trivy support vc++ projects?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Parallel scans utilizing same cache dir failing with 0.66.0
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Potential false positive: CVE-2024-54133 reported for actionpack 7.2.3
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 What does each letter of KSV and KCV stand for?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Is it possible that a CVE does not have any CVSS source?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Is it expected that Trivy doesn't detect CVE-2025-66478 (Next.js) yet?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Please help people in countries with internet restrictions
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 -
You must be logged in to vote 🙏 list-all-pkgs does not work for table format
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning target/container-imageIssues relating to container image scanning -
You must be logged in to vote 🙏 CVE-2024-50343 is not detected when vulnerable package is in composer.lock
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 Pulling Trivy-DB From A Private Registry
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 trivy does not manage VEX attestation as expected with option --vex oci
triage/supportIndicates an issue that is a support question. scan/vulnerabilityIssues relating to vulnerability scanning -
You must be logged in to vote 🙏 How to display reports?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Override built-in check severity
triage/supportIndicates an issue that is a support question. scan/misconfigurationIssues relating to misconfiguration scanning -
You must be logged in to vote 🙏 Why is
triage/supportcomponent.evidence.occurrences.locationnot populated in CycloneDX SBOMs?Indicates an issue that is a support question. -
You must be logged in to vote 🙏
triage/supportdownloadLocationis almost always NONE in SPDX formatIndicates an issue that is a support question. -
You must be logged in to vote 🙏 -
You must be logged in to vote 🙏 Multiple CVEs reported in Trivy 0.67.2 - are any exploitable?
triage/supportIndicates an issue that is a support question. -
You must be logged in to vote 🙏 Error "semaphore acquire: context deadline exceeded" when running Trivy fs scan on WildFly repository
triage/supportIndicates an issue that is a support question.