Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Specify the paths of the file or packages that has vulnerabilities #16017

Open
patrickdung opened this issue Nov 17, 2021 · 2 comments
Open

Specify the paths of the file or packages that has vulnerabilities #16017

patrickdung opened this issue Nov 17, 2021 · 2 comments
Assignees
Labels
area/vulnerability-scan kind/requirement New feature or idea on top of harbor

Comments

@patrickdung
Copy link

Is your feature request related to a problem? Please describe.
Feature request

Describe the solution you'd like
After a vuln scanning by Trivy or Anchore, it has a report.
The report shows the vulnerabilities, but it does not specify the exact path/application programs or OS package has vulnerabilities.

Take NodeJS as an example, some packages are from OS and some are from the application (npm). It is good if Harbor could display more info about it. So that we could find out where to fix it.

@stonezdj stonezdj added the kind/requirement New feature or idea on top of harbor label Nov 22, 2021
@github-actions
Copy link

github-actions bot commented Jul 5, 2022

This issue is being marked stale due to a period of inactivity. If this issue is still relevant, please comment or remove the stale label. Otherwise, this issue will close in 30 days.

@bianjp
Copy link

bianjp commented Aug 3, 2023

Related issues in trivy-adapter: aquasecurity/harbor-scanner-trivy#257, aquasecurity/harbor-scanner-trivy#357

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
area/vulnerability-scan kind/requirement New feature or idea on top of harbor
Projects
None yet
Development

No branches or pull requests

4 participants