-
Notifications
You must be signed in to change notification settings - Fork 21
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
[Bug]: ui/vulnerabilities: entries need more detail about the CVE #405
Comments
Backend side enhancement: project-zot/zot#2079 |
BE was actually updated in project-zot/zot#2086 |
@mikemccracken we have an update, merged in #419 / project-zot/zot#2233 We could not obtain the file names, but the package names/versions, and reference URL have been added. |
current version looks like it resolves all of these, thanks! |
zot version
v1.4.3
Describe the bug
as a person evaluating cves found in an image I am responsible for, I need to quickly find the following info about a cve:
link to a database with any bugs filed, diffs/PRs for fixes, discussions etc. for example, NIST's NVD: https://nvd.nist.gov/vuln/detail/CVE-2023-39325
if available from the scanner, the distro package name(s) that have the bug and if applicable the versions where it was fixed.
also if available, file names where the scanner thinks it found the cve, to help understand possible false positives
To reproduce
Expected behavior
No response
Screenshots
No response
Additional context
No response
The text was updated successfully, but these errors were encountered: