Baike.dev
All toolsAI codingTrendingOpen sourceNewsSubmit
Log in
Back to tool

trivy · Issues· 272 open

Open on GitHub

Locally synced open issues (discussions stay on GitHub)

  • #11264

    fix(dpkg): build the dependency graph for packages from /var/lib/dpkg/status.d

    kind/bugUpdated Sep 17, 2026
  • #9386

    bug(k8s): "trivy k8s --report all --compliance k8s-cis-1.23 --format table" doesn't show the output

    kind/bugUpdated Sep 16, 2026
  • #11253

    bug(license): license scanner silently drops licenses that fail SPDX parsing

    kind/bugscan/licenseUpdated Sep 15, 2026
  • #3259

    Trivy filesystem scan failing for Windows os filesystem

    kind/bughelp wantedlifecycle/activeUpdated Sep 15, 2026
  • #11247

    Cargo analyzer drops direct dependencies declared without `version`

    kind/bugscan/vulnerabilityscan/sbomUpdated Sep 14, 2026
  • #11121

    bug(misconf): AWS-0047 misses ELB security policies that allow TLS 1.0 and 1.1

    kind/bugscan/misconfigurationUpdated Sep 10, 2026
  • #11222

    bug(misconf): numbers in Terraform list attributes are not converted to strings

    kind/bugscan/misconfigurationUpdated Sep 10, 2026
  • #11199

    bug(redhat): picking the highest fixed version across minor releases reports already-patched packages

    kind/bugscan/vulnerabilityUpdated Sep 9, 2026
  • #11215

    feat: support multiple package digests with acquisition sources

    kind/featureUpdated Sep 9, 2026
  • #11118

    bug(misconf): false positive in AWS-0126 when the TLS policy is Policy-Min-TLS-1-2-RFC9151-FIPS-2024-08

    kind/buggood first issuescan/misconfigurationUpdated Sep 8, 2026
  • #11117

    bug(misconf): AWS-0112 only accepts TLS_1_2 and rejects the newer secure policies

    kind/buggood first issuescan/misconfigurationUpdated Sep 8, 2026
  • #11192

    bug(terraform): both .tf and .tofu files with the same name are scanned

    kind/bugscan/misconfigurationUpdated Sep 4, 2026
  • #10583

    feat(ignore): make id optional in .trivyignore.yaml to ignore all findings for a PURL/path

    kind/featurescan/vulnerabilityUpdated Sep 4, 2026
  • #7844

    bug(java): We should parse dependencies with unsupported scopes to correctly detect version/skip dependency

    kind/bugUpdated Sep 3, 2026
  • #10962

    Add cryptographic asset inventory for container images

    kind/featureUpdated Aug 25, 2026