@@ -440,7 +440,7 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
440440
441441
442442Container Scanning Result (Ubuntu 22.04.5 LTS) (Based on "ubuntu" image):
443- Total 22 packages affected by 48 known vulnerabilities (3 Critical, 15 High, 25 Medium, 3 Low, 2 Unknown) from 1 ecosystem.
443+ Total 22 packages affected by 46 known vulnerabilities (3 Critical, 14 High, 24 Medium, 3 Low, 2 Unknown) from 1 ecosystem.
44444424 vulnerabilities can be fixed.
445445
446446
@@ -463,12 +463,12 @@ Ubuntu:22.04
463463| libzstd | 1.4.8+dfsg-3build1 | No fix available | 1 | libzstd1 | # 4 Layer | ubuntu |
464464| lz4 | 1.9.3-2build2 | No fix available | 1 | liblz4-1 | # 4 Layer | ubuntu |
465465| ncurses | 6.3-2ubuntu0.1 | No fix available | 2 | libncurses6... (5) | # 4 Layer | ubuntu |
466- | openssl | 3.0.2-0ubuntu1.18 | Partial fixes Available | 6 | libssl3 | # 4 Layer | ubuntu |
466+ | openssl | 3.0.2-0ubuntu1.18 | Partial fixes Available | 5 | libssl3 | # 4 Layer | ubuntu |
467467| pam | 1.4.0-11ubuntu2.5 | Partial fixes Available | 3 | libpam-modules... (4) | # 4 Layer | ubuntu |
468468| pcre2 | 10.39-3ubuntu0.1 | No fix available | 1 | libpcre2-8-0 | # 4 Layer | ubuntu |
469469| perl | 5.34.0-3ubuntu1.3 | Partial fixes Available | 3 | perl-base | # 4 Layer | ubuntu |
470470| shadow | 1:4.8.1-2ubuntu2.2 | No fix available | 2 | login, passwd | # 4 Layer | ubuntu |
471- | systemd | 249.11-0ubuntu3.12 | Partial fixes Available | 3 | libsystemd0... (2) | # 4 Layer | ubuntu |
471+ | systemd | 249.11-0ubuntu3.12 | Partial fixes Available | 2 | libsystemd0... (2) | # 4 Layer | ubuntu |
472472| tar | 1.34+dfsg-1ubuntu0.1.22.04.2 | No fix available | 1 | tar | # 4 Layer | ubuntu |
473473| util-linux | 2.37.2-4ubuntu3.4 | Fix Available | 1 | libblkid1... (6) | # 4 Layer | ubuntu |
474474| zlib | 1:1.2.11.dfsg-2ubuntu9.2 | No fix available | 1 | zlib1g | # 4 Layer | ubuntu |
@@ -489,7 +489,7 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
489489
490490
491491Container Scanning Result (Ubuntu 22.04.5 LTS) (Based on "ubuntu" image):
492- Total 22 packages affected by 48 known vulnerabilities (3 Critical, 15 High, 25 Medium, 3 Low, 2 Unknown) from 1 ecosystem.
492+ Total 22 packages affected by 46 known vulnerabilities (3 Critical, 14 High, 24 Medium, 3 Low, 2 Unknown) from 1 ecosystem.
49349324 vulnerabilities can be fixed.
494494
495495
@@ -512,12 +512,12 @@ Ubuntu:22.04
512512| libzstd | 1.4.8+dfsg-3build1 | No fix available | 1 | libzstd1 | # 4 Layer | ubuntu |
513513| lz4 | 1.9.3-2build2 | No fix available | 1 | liblz4-1 | # 4 Layer | ubuntu |
514514| ncurses | 6.3-2ubuntu0.1 | No fix available | 2 | libncurses6... (5) | # 4 Layer | ubuntu |
515- | openssl | 3.0.2-0ubuntu1.18 | Partial fixes Available | 6 | libssl3 | # 4 Layer | ubuntu |
515+ | openssl | 3.0.2-0ubuntu1.18 | Partial fixes Available | 5 | libssl3 | # 4 Layer | ubuntu |
516516| pam | 1.4.0-11ubuntu2.5 | Partial fixes Available | 3 | libpam-modules... (4) | # 4 Layer | ubuntu |
517517| pcre2 | 10.39-3ubuntu0.1 | No fix available | 1 | libpcre2-8-0 | # 4 Layer | ubuntu |
518518| perl | 5.34.0-3ubuntu1.3 | Partial fixes Available | 3 | perl-base | # 4 Layer | ubuntu |
519519| shadow | 1:4.8.1-2ubuntu2.2 | No fix available | 2 | login, passwd | # 4 Layer | ubuntu |
520- | systemd | 249.11-0ubuntu3.12 | Partial fixes Available | 3 | libsystemd0... (2) | # 4 Layer | ubuntu |
520+ | systemd | 249.11-0ubuntu3.12 | Partial fixes Available | 2 | libsystemd0... (2) | # 4 Layer | ubuntu |
521521| tar | 1.34+dfsg-1ubuntu0.1.22.04.2 | No fix available | 1 | tar | # 4 Layer | ubuntu |
522522| util-linux | 2.37.2-4ubuntu3.4 | Fix Available | 1 | libblkid1... (6) | # 4 Layer | ubuntu |
523523| zlib | 1:1.2.11.dfsg-2ubuntu9.2 | No fix available | 1 | zlib1g | # 4 Layer | ubuntu |
@@ -557,7 +557,7 @@ Scanning local image tarball "./testdata/test-ubuntu-with-packages.tar"
557557
558558
559559Container Scanning Result (Ubuntu 22.04.5 LTS) (Based on "ubuntu" image):
560- Total 22 packages affected by 48 known vulnerabilities (3 Critical, 15 High, 25 Medium, 3 Low, 2 Unknown) from 1 ecosystem.
560+ Total 22 packages affected by 46 known vulnerabilities (3 Critical, 14 High, 24 Medium, 3 Low, 2 Unknown) from 1 ecosystem.
56156124 vulnerabilities can be fixed.
562562
563563
@@ -580,12 +580,12 @@ Ubuntu:22.04
580580| libzstd | 1.4.8+dfsg-3build1 | No fix available | 1 | libzstd1 | # 4 Layer | ubuntu |
581581| lz4 | 1.9.3-2build2 | No fix available | 1 | liblz4-1 | # 4 Layer | ubuntu |
582582| ncurses | 6.3-2ubuntu0.1 | No fix available | 2 | libncurses6... (5) | # 4 Layer | ubuntu |
583- | openssl | 3.0.2-0ubuntu1.18 | Partial fixes Available | 6 | libssl3 | # 4 Layer | ubuntu |
583+ | openssl | 3.0.2-0ubuntu1.18 | Partial fixes Available | 5 | libssl3 | # 4 Layer | ubuntu |
584584| pam | 1.4.0-11ubuntu2.5 | Partial fixes Available | 3 | libpam-modules... (4) | # 4 Layer | ubuntu |
585585| pcre2 | 10.39-3ubuntu0.1 | No fix available | 1 | libpcre2-8-0 | # 4 Layer | ubuntu |
586586| perl | 5.34.0-3ubuntu1.3 | Partial fixes Available | 3 | perl-base | # 4 Layer | ubuntu |
587587| shadow | 1:4.8.1-2ubuntu2.2 | No fix available | 2 | login, passwd | # 4 Layer | ubuntu |
588- | systemd | 249.11-0ubuntu3.12 | Partial fixes Available | 3 | libsystemd0... (2) | # 4 Layer | ubuntu |
588+ | systemd | 249.11-0ubuntu3.12 | Partial fixes Available | 2 | libsystemd0... (2) | # 4 Layer | ubuntu |
589589| tar | 1.34+dfsg-1ubuntu0.1.22.04.2 | No fix available | 1 | tar | # 4 Layer | ubuntu |
590590| util-linux | 2.37.2-4ubuntu3.4 | Fix Available | 1 | libblkid1... (6) | # 4 Layer | ubuntu |
591591| zlib | 1:1.2.11.dfsg-2ubuntu9.2 | No fix available | 1 | zlib1g | # 4 Layer | ubuntu |
@@ -606,8 +606,8 @@ Scanning local image tarball "./testdata/test-java-full.tar"
606606
607607
608608Container Scanning Result (Alpine Linux v3.21) (Based on "eclipse-temurin" image):
609- Total 25 packages affected by 73 known vulnerabilities (3 Critical, 30 High, 35 Medium, 4 Low, 1 Unknown) from 2 ecosystems.
610- 73 vulnerabilities can be fixed.
609+ Total 25 packages affected by 74 known vulnerabilities (3 Critical, 30 High, 36 Medium, 4 Low, 1 Unknown) from 2 ecosystems.
610+ 74 vulnerabilities can be fixed.
611611
612612
613613Maven
@@ -640,7 +640,7 @@ Alpine:v3.21
640640| SOURCE PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | BINARY PACKAGES (COUNT) | INTRODUCED LAYER | IN BASE IMAGE |
641641+----------------+-------------------+---------------+------------+----------------------------+------------------+-----------------+
642642| busybox | 1.37.0-r9 | Fix Available | 2 | busybox... (3) | # 0 Layer | alpine |
643- | expat | 2.6.4-r0 | Fix Available | 6 | libexpat | # 5 Layer | eclipse-temurin |
643+ | expat | 2.6.4-r0 | Fix Available | 7 | libexpat | # 5 Layer | eclipse-temurin |
644644| gnupg | 2.4.7-r0 | Fix Available | 2 | gnupg... (11) | # 5 Layer | eclipse-temurin |
645645| gnutls | 3.8.8-r0 | Fix Available | 7 | gnutls | # 5 Layer | eclipse-temurin |
646646| libpng | 1.6.44-r0 | Fix Available | 8 | libpng | # 5 Layer | eclipse-temurin |
@@ -3556,7 +3556,7 @@ Scanning local image tarball "./testdata/test-node_modules-npm-full.tar"
35563556 " index" : 4
35573557 }
35583558 },
3559- " groups" : 6 ,
3559+ " groups" : 5 ,
35603560 " vulnerabilities" : [
35613561 " USN-7980-1" ,
35623562 " USN-7786-1" ,
@@ -3573,8 +3573,7 @@ Scanning local image tarball "./testdata/test-node_modules-npm-full.tar"
35733573 " UBUNTU-CVE-2025-69421" ,
35743574 " UBUNTU-CVE-2025-9230" ,
35753575 " UBUNTU-CVE-2026-22795" ,
3576- " UBUNTU-CVE-2026-22796" ,
3577- " UBUNTU-CVE-2026-2673"
3576+ " UBUNTU-CVE-2026-22796"
35783577 ]
35793578 },
35803579 {
@@ -3604,12 +3603,11 @@ Scanning local image tarball "./testdata/test-node_modules-npm-full.tar"
36043603 " index" : 4
36053604 }
36063605 },
3607- " groups" : 3 ,
3606+ " groups" : 2 ,
36083607 " vulnerabilities" : [
36093608 " USN-7559-1" ,
36103609 " UBUNTU-CVE-2023-7008" ,
3611- " UBUNTU-CVE-2025-4598" ,
3612- " UBUNTU-CVE-2026-4105"
3610+ " UBUNTU-CVE-2025-4598"
36133611 ]
36143612 },
36153613 {
@@ -3657,12 +3655,11 @@ Scanning local image tarball "./testdata/test-node_modules-npm-full.tar"
36573655 " index" : 4
36583656 }
36593657 },
3660- " groups" : 3 ,
3658+ " groups" : 2 ,
36613659 " vulnerabilities" : [
36623660 " USN-7559-1" ,
36633661 " UBUNTU-CVE-2023-7008" ,
3664- " UBUNTU-CVE-2025-4598" ,
3665- " UBUNTU-CVE-2026-4105"
3662+ " UBUNTU-CVE-2025-4598"
36663663 ]
36673664 },
36683665 {
@@ -4520,7 +4517,7 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
45204517 " index" : 4
45214518 }
45224519 },
4523- " groups" : 6 ,
4520+ " groups" : 5 ,
45244521 " vulnerabilities" : [
45254522 " USN-7980-1" ,
45264523 " USN-7786-1" ,
@@ -4537,8 +4534,7 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
45374534 " UBUNTU-CVE-2025-69421" ,
45384535 " UBUNTU-CVE-2025-9230" ,
45394536 " UBUNTU-CVE-2026-22795" ,
4540- " UBUNTU-CVE-2026-22796" ,
4541- " UBUNTU-CVE-2026-2673"
4537+ " UBUNTU-CVE-2026-22796"
45424538 ]
45434539 },
45444540 {
@@ -4568,12 +4564,11 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
45684564 " index" : 4
45694565 }
45704566 },
4571- " groups" : 3 ,
4567+ " groups" : 2 ,
45724568 " vulnerabilities" : [
45734569 " USN-7559-1" ,
45744570 " UBUNTU-CVE-2023-7008" ,
4575- " UBUNTU-CVE-2025-4598" ,
4576- " UBUNTU-CVE-2026-4105"
4571+ " UBUNTU-CVE-2025-4598"
45774572 ]
45784573 },
45794574 {
@@ -4621,12 +4616,11 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
46214616 " index" : 4
46224617 }
46234618 },
4624- " groups" : 3 ,
4619+ " groups" : 2 ,
46254620 " vulnerabilities" : [
46264621 " USN-7559-1" ,
46274622 " UBUNTU-CVE-2023-7008" ,
4628- " UBUNTU-CVE-2025-4598" ,
4629- " UBUNTU-CVE-2026-4105"
4623+ " UBUNTU-CVE-2025-4598"
46304624 ]
46314625 },
46324626 {
0 commit comments