-
It would be really helpful to be able to use this wrapper in my CI process without needing to include a particular binary in the image. So, it would be great if it were possible to specify a binary or…
-
### Bug Description
I am making a prototype of three snaps of [syft](https://github.com/anchore/syft), [grype](https://github.com/anchore/grype), and [grant](https://github.com/anchore/grant). They a…
-
**What happened**:
I'm using syft to scan all directories on an EC2 instance for an SBOM.
It hangs at this point, it's using 100% CPU, but never completes:
```
$ syft dir:/ --exclude ./opt/codedep…
-
# Issue
Recently in our CI, we have been experiencing grype db tcp read timeouts while downloading the db as part of using the action. This is leading to delayed and failed CVE scanning / additional …
-
I seem to be able to download the data cache for all providers using the make command without issues, but when using
```
grype-db -g
```
It errors on GitHub, and seems that I need a token. I'…
-
https://anchore.com/blog/build-your-own-grype-database/
-
There are community provided vulnerability advisories published here (UI) https://bodhi.fedoraproject.org/updates/?type=security , ideally to support matching fedora based images/systems in grype.
…
-
**What would you like to be added**:
The SLES provider should be enhanced to pull in the OVAL data stating that a package is affected but not fixed
**Why is this needed**:
This would allow ma…
-
**What happened**:
trying to scan images like alpine \ ubuntu.
it starts to download grype-db and then hangs.
this issue started today.
**What you expected to happen**:
download the db
**How to …
-
It would be useful to specify the location of a Grype configuration file, similar to how its done on the command line
```bash
grype --config path/to/.grype.yml [IMAGE]
```