update fixed version field #5075
DmitriyLewen
started this conversation in
Development
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Description
There are cases, when package has fixed versions for vulnerability, but last major version has no fix.
When we scan the latest major version, Trivy shows the fixed versions for previous versions.
This can be confusing.
Perhaps we need to change logic to show
fixed version
.Example for better understanding:
CVE-2021-23214 fixed versions:
When scanning version "15.4.0" we got the following result:
Beta Was this translation helpful? Give feedback.
All reactions