Replies: 1 comment
-
Fixed in aquasecurity/trivy-db#355 |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Description
Raised in #5214 and aquasecurity/trivy-db#353
Something is crossed up in categorizing GHSA as
rust
vscargo
vulnerabilities. Because they are mistagged, they are ignored and no rust vulnerabilities are reported.Desired Behavior
When I run a scan in a rust project with a known vulnerability, I expect it to be flagged.
Actual Behavior
Nothing is raised in rust projects.
Reproduction Steps
Target
Git Repository
Scanner
Vulnerability
Output Format
JSON
Mode
Standalone
Debug Output
Operating System
Any
Version
Checklist
trivy image --reset
Beta Was this translation helpful? Give feedback.
All reactions