canonical / bundle-kubeflow

Charmed Kubeflow
Apache License 2.0
103 stars 50 forks source link

Get an overview of the vulnerabilities of the bundle #1086

Open DnPlas opened 1 week ago

DnPlas commented 1 week ago

Context

In order to have a list of vulnerabilities to work on, the team needs to scan and parse the vulnerability reports from the Scan images workflow.

What needs to get done

  1. Get the latest available result of the Scan images report for CKF 1.9
  2. Parse the trivy report and identify the HIGH and CRITICAL vulnerabilities
  3. Create a task for each of the vulnerabilities, add the highest priority to their corresponding Jira cards and put them at the top of the Jira backlog

Definition of Done

The bundle vulnerabilities are identified with Github issues

syncronize-issues-to-jira[bot] commented 1 week ago

Thank you for reporting us your feedback!

The internal ticket has been created: https://warthogs.atlassian.net/browse/KF-6299.

This message was autogenerated