Closed krishnaindani closed 8 months ago
Please do not report raw vulnerability scanner results. They are prone to false positives and cause the Prometheus team toil in verifying. Please verify vulnerability reports and include specific details as to which components are directly exploitable.
You're using old packages, and you have not released in months. Perhaps some toil is exactly what the doctor ordered. "Completed" is an inappropriate status.
/reopen
Host operating system: output of
uname -a
Linux gke x86_64 GNU/Linux
node_exporter version: output of
node_exporter --version
1.7.0
node_exporter command line flags
node_exporter log output
Are you running node_exporter in Docker?
Running as container on Kubernetes GKE
What did you do that produced an error?
Found following CVE's on the above version using twistlock.