-
Despite our best efforts, it's likely that a security vulnerability will be discovered by a non-contributor out in the wild. It would be good to have a page instructing them how to best report the iss…
-
After a kubescape scan, we have detected that Anonymous user has RoleBinding.
Should be more secure to close it.
Thanks
-
Is "A Buffer Overflow vulnerability" a copy paste error?
-
**Is your feature request related to a problem? Please describe.**
I'm looking to reduce the number of false positives from SCA vulnerabilities by performing function-level reachability analysis. How…
-
when i use cvechecker -r,
Where to read the test report?
![image](https://user-images.githubusercontent.com/53001053/61434290-22f9cd00-a968-11e9-86bb-76f62cb0a439.png)
![image](https://user-images.…
-
I have a project in which `karma-sonarqube-unit-reporter` is a dev dependency. When executing the command `yarn audit` it reports a vulnerability due to this package. I believe this would also be the …
-
https://kubearmor.io/
Evaluate:
- Community adoption
- Chainguard/Ironbank support
- Feature parity with NeuVector
- Out of the box experience and alignment with deployment methodology (helm, c…
-
_This issue was automatically created by [Allstar](https://github.com/ossf/allstar/)._
**Security Policy Violation**
Security policy not enabled.
A SECURITY.md file can give users information about w…
-
_This issue was automatically created by [Allstar](https://github.com/ossf/allstar/)._
**Security Policy Violation**
Security policy not enabled.
A SECURITY.md file can give users information about w…
-
**Describe the bug**
Golang Mod Analyzer doesn't report vulnerability about itself.
go.mod
```go 1.13```
it should report vulnerability CVE-2020-28366, but report nothing
(Go before 1.14.12…