build-tools/README-vulnerability-scans.md
2025-02-21 12:40:30 +05:30

509 B

Grype

https://anchorecommunity.discourse.group/t/how-to-act-on-go-module-vulnerabilities/186/2

Fixing issues within the image

curl -sSfL https://raw.githubusercontent.com/anchore/grype/main/install.sh | sudo sh -s -- -b /usr/local/bin/

#To check vulnerabilities
grype .
#To save detailed output
grype $MY_IMAGE -o json > vuln.json
#OR
grype . -o json > vuln.json

#To explain the issue:
cat vuln.json | grype explain --id CVE-2023-24537
cat vuln2.json | grype explain --id CVE-2023-45853