Looks like trivy is reporting FP for ingress v1.12.1 #8760
dsever
started this conversation in
False Detection
Replies: 0 comments
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
IDs
CVE-2021-25742, CVE-2023-5043,CVE-2023-5044
Description
According to NVD and Aqua DB it should not be Vulnerable for v1.12.1
CVE-2021-25742, https://avd.aquasec.com/nvd/cve-2021-25742
CVE-2023-5043, https://avd.aquasec.com/nvd/cve-2023-5043
CVE-2023-5044, https://avd.aquasec.com/nvd/cve-2023-5044
Reproduction Steps
Target
Kubernetes
Scanner
Vulnerability
Target OS
Minikube
Debug Output
Version
Checklist
-f json
that shows data sources and confirmed that the security advisory in data sources was correctBeta Was this translation helpful? Give feedback.
All reactions