anchore / grype

A vulnerability scanner for container images and filesystems
Apache License 2.0
8.19k stars 529 forks source link

fix: update sarif to pass microsoft validator #1838

Closed kzantow closed 2 months ago

kzantow commented 2 months ago

This PR adjusts the SARIF output to pass the Microsoft JS validator and adds a validation step to the unit tests.

Fixes: #1833 Fixes: #1518