@@ -592,8 +592,8 @@ You can also view the full vulnerability list in your terminal with: `osv-scanne
592592Scanning local image tarball "./testdata/test-python-full.tar"
593593
594594Container Scanning Result (Debian GNU/Linux 10 (buster)):
595- Total 19 packages affected by 44 known vulnerabilities (1 Critical, 14 High, 14 Medium, 0 Low, 15 Unknown) from 2 ecosystems.
596- 44 vulnerabilities can be fixed.
595+ Total 19 packages affected by 46 known vulnerabilities (1 Critical, 16 High, 14 Medium, 0 Low, 15 Unknown) from 2 ecosystems.
596+ 46 vulnerabilities can be fixed.
597597
598598
599599PyPI
658658+---------+-------------------+---------------+------------+------------------+---------------+
659659| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
660660+---------+-------------------+---------------+------------+------------------+---------------+
661- | urllib3 | 1.24.3 | Fix Available | 6 | # 17 Layer | -- |
661+ | urllib3 | 1.24.3 | Fix Available | 8 | # 17 Layer | -- |
662662+---------+-------------------+---------------+------------+------------------+---------------+
663663Debian:10
664664+-----------------------------------------------------------------------------------------------------------------------------------------------+
@@ -691,8 +691,8 @@ You can also view the full vulnerability list in your terminal with: `osv-scanne
691691Scanning local image tarball "./testdata/test-package-tracing.tar"
692692
693693Container Scanning Result (Alpine Linux v3.20):
694- Total 9 packages affected by 143 known vulnerabilities (1 Critical, 3 High, 5 Medium, 2 Low, 132 Unknown) from 2 ecosystems.
695- 143 vulnerabilities can be fixed.
694+ Total 9 packages affected by 155 known vulnerabilities (1 Critical, 3 High, 5 Medium, 2 Low, 144 Unknown) from 2 ecosystems.
695+ 155 vulnerabilities can be fixed.
696696
697697
698698Go
701701+---------+-------------------+---------------+------------+------------------+---------------+
702702| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
703703+---------+-------------------+---------------+------------+------------------+---------------+
704- | stdlib | 1.22.4 | Fix Available | 22 | # 9 Layer | -- |
704+ | stdlib | 1.22.4 | Fix Available | 24 | # 9 Layer | -- |
705705+---------+-------------------+---------------+------------+------------------+---------------+
706706+---------------------------------------------------------------------------------------------+
707707| Source:artifact:/go/bin/ptf-1.2.0 |
708708+---------+-------------------+---------------+------------+------------------+---------------+
709709| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
710710+---------+-------------------+---------------+------------+------------------+---------------+
711- | stdlib | 1.22.4 | Fix Available | 22 | # 2 Layer | -- |
711+ | stdlib | 1.22.4 | Fix Available | 24 | # 2 Layer | -- |
712712+---------+-------------------+---------------+------------+------------------+---------------+
713713+---------------------------------------------------------------------------------------------+
714714| Source:artifact:/go/bin/ptf-1.3.0 |
715715+---------+-------------------+---------------+------------+------------------+---------------+
716716| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
717717+---------+-------------------+---------------+------------+------------------+---------------+
718- | stdlib | 1.22.4 | Fix Available | 22 | # 4 Layer | -- |
718+ | stdlib | 1.22.4 | Fix Available | 24 | # 4 Layer | -- |
719719+---------+-------------------+---------------+------------+------------------+---------------+
720720+---------------------------------------------------------------------------------------------+
721721| Source:artifact:/go/bin/ptf-1.3.0-moved |
722722+---------+-------------------+---------------+------------+------------------+---------------+
723723| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
724724+---------+-------------------+---------------+------------+------------------+---------------+
725- | stdlib | 1.22.4 | Fix Available | 22 | # 3 Layer | -- |
725+ | stdlib | 1.22.4 | Fix Available | 24 | # 3 Layer | -- |
726726+---------+-------------------+---------------+------------+------------------+---------------+
727727+---------------------------------------------------------------------------------------------+
728728| Source:artifact:/go/bin/ptf-1.4.0 |
729729+---------+-------------------+---------------+------------+------------------+---------------+
730730| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
731731+---------+-------------------+---------------+------------+------------------+---------------+
732- | stdlib | 1.22.4 | Fix Available | 22 | # 2 Layer | -- |
732+ | stdlib | 1.22.4 | Fix Available | 24 | # 2 Layer | -- |
733733+---------+-------------------+---------------+------------+------------------+---------------+
734734+---------------------------------------------------------------------------------------------+
735735| Source:artifact:/go/bin/ptf-vulnerable |
736736+---------+-------------------+---------------+------------+------------------+---------------+
737737| PACKAGE | INSTALLED VERSION | FIX AVAILABLE | VULN COUNT | INTRODUCED LAYER | IN BASE IMAGE |
738738+---------+-------------------+---------------+------------+------------------+---------------+
739- | stdlib | 1.22.4 | Fix Available | 22 | # 7 Layer | -- |
739+ | stdlib | 1.22.4 | Fix Available | 24 | # 7 Layer | -- |
740740+---------+-------------------+---------------+------------+------------------+---------------+
741741Alpine:v3.20
742742+------------------------------------------------------------------------------------------------------------------------------+
@@ -1255,14 +1255,16 @@ You can also view the full vulnerability list in your terminal with: `osv-scanne
12551255 " index" : 17
12561256 }
12571257 },
1258- " groups" : 6 ,
1258+ " groups" : 8 ,
12591259 " vulnerabilities" : [
12601260 " PYSEC-2020-148" ,
12611261 " PYSEC-2021-108" ,
12621262 " PYSEC-2023-192" ,
12631263 " PYSEC-2023-212" ,
1264+ " GHSA-2xpw-w6gg-jr37" ,
12641265 " GHSA-34jh-p97f-mpxf" ,
12651266 " GHSA-g4mx-q9vg-27p4" ,
1267+ " GHSA-gm62-xv2j-4w53" ,
12661268 " GHSA-pq67-6m6q-mj2v" ,
12671269 " GHSA-v845-jxx5-vc9f" ,
12681270 " GHSA-wqvq-5m8c-6g24"
@@ -1938,7 +1940,7 @@ Scanning local image tarball "./testdata/test-image-with-deprecated.tar"
19381940 " index" : 2
19391941 }
19401942 },
1941- " groups" : 22 ,
1943+ " groups" : 24 ,
19421944 " vulnerabilities" : [
19431945 " GO-2024-2963" ,
19441946 " GO-2024-3105" ,
@@ -1961,7 +1963,9 @@ Scanning local image tarball "./testdata/test-image-with-deprecated.tar"
19611963 " GO-2025-4012" ,
19621964 " GO-2025-4013" ,
19631965 " GO-2025-4014" ,
1964- " GO-2025-4015"
1966+ " GO-2025-4015" ,
1967+ " GO-2025-4155" ,
1968+ " GO-2025-4175"
19651969 ]
19661970 },
19671971 {
@@ -3486,7 +3490,7 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
34863490 " index" : 7
34873491 }
34883492 },
3489- " groups" : 74 ,
3493+ " groups" : 76 ,
34903494 " vulnerabilities" : [
34913495 " GO-2022-0477" ,
34923496 " GO-2022-0493" ,
@@ -3561,7 +3565,9 @@ Scanning local image tarball "./testdata/test-ubuntu.tar"
35613565 " GO-2025-4012" ,
35623566 " GO-2025-4013" ,
35633567 " GO-2025-4014" ,
3564- " GO-2025-4015"
3568+ " GO-2025-4015" ,
3569+ " GO-2025-4155" ,
3570+ " GO-2025-4175"
35653571 ]
35663572 }
35673573 ]
0 commit comments