Commit 797f391
UID2-6806: suppress CVE-2026-32776 (libexpat) in .trivyignore
libexpat NULL pointer dereference (CVE-2026-32776) - not exploitable as our
Java services do not use libexpat. Fix requires libexpat 2.7.5, not yet
available in eclipse-temurin Alpine 3.23. Also suppressing CVE-2026-32767
which is the same CVE with a Trivy typo (transposed digits).
Co-Authored-By: Claude Sonnet 4.6 <noreply@anthropic.com>1 parent 08f3c76 commit 797f391
1 file changed
+10
-0
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
9 | 9 | | |
10 | 10 | | |
11 | 11 | | |
| 12 | + | |
| 13 | + | |
| 14 | + | |
| 15 | + | |
| 16 | + | |
| 17 | + | |
| 18 | + | |
| 19 | + | |
| 20 | + | |
| 21 | + | |
0 commit comments