Inconsistent output across "table", "json", and "cyclonedx" output with respect to scoring #5372
Closed
skandragon
started this conversation in
Bugs
Replies: 1 comment
-
Hello @skandragon I created #5376 for this issue. Regards, Dmitriy |
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Description
When using the cyclonedx JSON output, it does not list the same scoring as the default "table" format, nor the "json" format.
Additionally, the link provided for the example CVE I'm including here links to the Aquasec page, which disagrees with the "table" and "json" formats, but kinda agrees with the "cyclonedx" output.
Desired Behavior
Consistent scoring with source references properly included.
Actual Behavior
Inconsistent scoring as described. Using multiple formats, which is the issue, but I listed "cyclonedx" in the issue...
Reproduction Steps
Target
Container Image
Scanner
Vulnerability
Output Format
CycloneDX
Mode
Standalone
Debug Output
Checklist
trivy image --reset
Beta Was this translation helpful? Give feedback.
All reactions