-
Notifications
You must be signed in to change notification settings - Fork 60
Pull requests: aquasecurity/trivy
Author
Label
Projects
Milestones
Reviews
Assignee
Sort
Pull requests list
perf(plugin): optimize directory traversal by replacing filepath.Walk with filepath.WalkDir
#10325
opened Mar 5, 2026 by
ankit98040
Loading…
2 of 6 tasks
ci: add zizmor to scan GitHub Actions workflows
#10322
opened Mar 4, 2026 by
DmitriyLewen
•
Draft
2 of 6 tasks
fix: correct typos in CHANGELOG and diagram
#10320
opened Mar 4, 2026 by
luojiyin1987
Loading…
2 tasks done
ci: add build provenance attestations for release artifacts
kind/security
Categorizes issue or PR as related to Trivy's own security or internal vulnerabilities.
#10316
opened Mar 3, 2026 by
knqyf263
Loading…
2 of 6 tasks
Fix/cvss v4 ratings missing from cyclone dx vulnerability output
#10314
opened Mar 3, 2026 by
mahichachra
Loading…
fix(cyclonedx): include CVSS v4 vulnerability ratings
#10313
opened Mar 3, 2026 by
drawliin
Loading…
3 of 6 tasks
ci(helm): bump Trivy version to 0.69.3 for Trivy Helm Chart 0.21.3
#10310
opened Mar 3, 2026 by
aqua-bot
Loading…
fix: allow .git/config scanning while skipping heavy subdirs
#10308
opened Mar 3, 2026 by
kenantan32
Loading…
ci: add persist-credentials: false to checkout steps
kind/security
Categorizes issue or PR as related to Trivy's own security or internal vulnerabilities.
#10306
opened Mar 3, 2026 by
knqyf263
Loading…
2 of 6 tasks
feat(report): add
Supported field for json and SBOM formats
#10304
opened Mar 3, 2026 by
DmitriyLewen
Loading…
2 of 6 tasks
refactor: include/exclude dev deps in analyzers
#10303
opened Mar 3, 2026 by
DmitriyLewen
Loading…
3 of 6 tasks
feat(java): add support of
test scope for pom.xml files
#10302
opened Mar 3, 2026 by
DmitriyLewen
•
Draft
3 of 7 tasks
fix(sbom): improve logic for determining Application type and filepath for non-Trivy SBOMs
#10301
opened Mar 3, 2026 by
DmitriyLewen
•
Draft
4 of 6 tasks
fix(vuln): save package-specific severity before severity selection
#10300
opened Mar 3, 2026 by
DmitriyLewen
Loading…
5 of 7 tasks
feat(sbom): add
BOMID field to match packages and decoded BOM components
#10299
opened Mar 3, 2026 by
DmitriyLewen
•
Draft
1 of 7 tasks
fix: overwrite OS packages PURLs after overwrite OS
#10298
opened Mar 3, 2026 by
DmitriyLewen
Loading…
4 of 6 tasks
feat(seal): add vendor support for language file detection.
#10297
opened Mar 3, 2026 by
DmitriyLewen
•
Draft
3 of 7 tasks
fix(flag): validate template file extension
#10296
opened Mar 3, 2026 by
DmitriyLewen
Loading…
4 of 6 tasks
chore: replace smithy epoch parsing with stdlib time.Unix
#10286
opened Mar 2, 2026 by
nikpivkin
Loading…
2 of 6 tasks
fix: detected vulnerability fields in azure and mariner detector
#10275
opened Mar 2, 2026 by
nimitjohri
Loading…
6 tasks done
fix(misconf): reject nil plays during playbook parsing
#10273
opened Mar 2, 2026 by
nikpivkin
Loading…
3 of 6 tasks
ci: run Trivy version bump in trivy-action
#10272
opened Mar 2, 2026 by
nikpivkin
Loading…
2 of 6 tasks
Previous Next
ProTip!
What’s not been updated in a month: updated:<2026-02-05.