Skip to content

Conversation

@rcambrj
Copy link
Collaborator

@rcambrj rcambrj commented Oct 13, 2025

Lowers grype error level from critical to high, which would have raised CVE-2025-9230-libcrypto3 & CVE-2025-9230-libssl3 (more info). These are now fixed in alpine 3.22.2.

Also echoes grype's SARIF output (but only the errors, and only when there's an error).

@rcambrj rcambrj force-pushed the fix-grype-grypes branch 5 times, most recently from 3c30c77 to 7a84b98 Compare October 13, 2025 11:46
@rcambrj rcambrj marked this pull request as ready for review October 13, 2025 11:58
@rcambrj rcambrj changed the title DRAFT: fix grype grypes fix grype grypes Oct 13, 2025
@rcambrj rcambrj merged commit 9996a84 into main Oct 13, 2025
8 checks passed
@rcambrj rcambrj deleted the fix-grype-grypes branch October 13, 2025 12:17
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants