Scheduled CVE vulnerability scan of 5.x published images. #37
vulnerability-scan-schedule-5x.yml
on: schedule
Scan for vulnerabilities on 5.x images
/
setup-matrix
30s
Scan for vulnerabilities on 5.x images
/
set-sha-ref
4s
Matrix: Scan for vulnerabilities on 5.x images / vulnerability-scan
Annotations
22 errors
Scan for vulnerabilities on 5.x images / vulnerability-scan (ci-builder)
2024-11-06T22:02:06Z INFO [vulndb] Need to update DB
2024-11-06T22:02:06Z INFO [vulndb] Downloading vulnerability DB...
2024-11-06T22:02:06Z INFO [vulndb] Downloading artifact... repo="ghcr.io/aquasecurity/trivy-db:2"
2024-11-06T22:02:06Z ERROR [vulndb] Failed to download artifact repo="ghcr.io/aquasecurity/trivy-db:2" err="oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-db/blobs/sha256:93e3f923d708457a8fe7609d165d53941ecb965f9404de7399651df5621a69e6: TOOMANYREQUESTS: retry-after: 1.218229ms, allowed: 44000/minute"
2024-11-06T22:02:06Z FATAL Fatal error init error: DB error: failed to download vulnerability DB: OCI artifact error: failed to download vulnerability DB: failed to download artifact from any source: 1 error occurred:
* oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-db/blobs/sha256:93e3f923d708457a8fe7609d165d53941ecb965f9404de7399651df5621a69e6: TOOMANYREQUESTS: retry-after: 1.218229ms, allowed: 44000/minute
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (elasticsearch)
2024-11-06T22:02:07Z INFO [vulndb] Need to update DB
2024-11-06T22:02:07Z INFO [vulndb] Downloading vulnerability DB...
2024-11-06T22:02:07Z INFO [vulndb] Downloading artifact... repo="ghcr.io/aquasecurity/trivy-db:2"
2024-11-06T22:02:07Z ERROR [vulndb] Failed to download artifact repo="ghcr.io/aquasecurity/trivy-db:2" err="OCI repository error: 1 error occurred:\n\t* GET https://ghcr.io/v2/aquasecurity/trivy-db/manifests/2: TOOMANYREQUESTS: retry-after: 102.758µs, allowed: 44000/minute\n\n"
2024-11-06T22:02:07Z FATAL Fatal error init error: DB error: failed to download vulnerability DB: OCI artifact error: failed to download vulnerability DB: failed to download artifact from any source: 1 error occurred:
* OCI repository error: 1 error occurred:
* GET https://ghcr.io/v2/aquasecurity/trivy-db/manifests/2: TOOMANYREQUESTS: retry-after: 102.758µs, allowed: 44000/minute
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (mailhog)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (mailhog)
2024-11-06T22:02:07Z INFO [vulndb] Need to update DB
2024-11-06T22:02:07Z INFO [vulndb] Downloading vulnerability DB...
2024-11-06T22:02:07Z INFO [vulndb] Downloading artifact... repo="ghcr.io/aquasecurity/trivy-db:2"
2024-11-06T22:02:07Z ERROR [vulndb] Failed to download artifact repo="ghcr.io/aquasecurity/trivy-db:2" err="OCI repository error: 1 error occurred:\n\t* GET https://ghcr.io/v2/aquasecurity/trivy-db/manifests/2: TOOMANYREQUESTS: retry-after: 372.111µs, allowed: 44000/minute\n\n"
2024-11-06T22:02:07Z FATAL Fatal error init error: DB error: failed to download vulnerability DB: OCI artifact error: failed to download vulnerability DB: failed to download artifact from any source: 1 error occurred:
* OCI repository error: 1 error occurred:
* GET https://ghcr.io/v2/aquasecurity/trivy-db/manifests/2: TOOMANYREQUESTS: retry-after: 372.111µs, allowed: 44000/minute
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (php-fpm-exporter)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (php-fpm-exporter)
2024-11-06T22:02:08Z INFO [vulndb] Need to update DB
2024-11-06T22:02:08Z INFO [vulndb] Downloading vulnerability DB...
2024-11-06T22:02:08Z INFO [vulndb] Downloading artifact... repo="ghcr.io/aquasecurity/trivy-db:2"
2024-11-06T22:02:08Z ERROR [vulndb] Failed to download artifact repo="ghcr.io/aquasecurity/trivy-db:2" err="oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-db/blobs/sha256:93e3f923d708457a8fe7609d165d53941ecb965f9404de7399651df5621a69e6: TOOMANYREQUESTS: retry-after: 322.788µs, allowed: 44000/minute"
2024-11-06T22:02:08Z FATAL Fatal error init error: DB error: failed to download vulnerability DB: OCI artifact error: failed to download vulnerability DB: failed to download artifact from any source: 1 error occurred:
* oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-db/blobs/sha256:93e3f923d708457a8fe7609d165d53941ecb965f9404de7399651df5621a69e6: TOOMANYREQUESTS: retry-after: 322.788µs, allowed: 44000/minute
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (awx-ee)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (awx-ee)
2024-11-06T22:02:08Z INFO [vulndb] Need to update DB
2024-11-06T22:02:08Z INFO [vulndb] Downloading vulnerability DB...
2024-11-06T22:02:08Z INFO [vulndb] Downloading artifact... repo="ghcr.io/aquasecurity/trivy-db:2"
2024-11-06T22:02:08Z ERROR [vulndb] Failed to download artifact repo="ghcr.io/aquasecurity/trivy-db:2" err="OCI repository error: 1 error occurred:\n\t* GET https://ghcr.io/v2/aquasecurity/trivy-db/manifests/2: TOOMANYREQUESTS: retry-after: 698.626µs, allowed: 44000/minute\n\n"
2024-11-06T22:02:08Z FATAL Fatal error init error: DB error: failed to download vulnerability DB: OCI artifact error: failed to download vulnerability DB: failed to download artifact from any source: 1 error occurred:
* OCI repository error: 1 error occurred:
* GET https://ghcr.io/v2/aquasecurity/trivy-db/manifests/2: TOOMANYREQUESTS: retry-after: 698.626µs, allowed: 44000/minute
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (mariadb)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (mariadb)
The operation was canceled.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (nginx)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (nginx)
The operation was canceled.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (php-fpm)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (php-fpm)
The operation was canceled.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (ripple-static)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (ripple-static)
2024-11-06T22:02:09Z INFO [vulndb] Need to update DB
2024-11-06T22:02:09Z INFO [vulndb] Downloading vulnerability DB...
2024-11-06T22:02:09Z INFO [vulndb] Downloading artifact... repo="ghcr.io/aquasecurity/trivy-db:2"
2024-11-06T22:02:09Z ERROR [vulndb] Failed to download artifact repo="ghcr.io/aquasecurity/trivy-db:2" err="oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-db/blobs/sha256:93e3f923d708457a8fe7609d165d53941ecb965f9404de7399651df5621a69e6: TOOMANYREQUESTS: retry-after: 610.321µs, allowed: 44000/minute"
2024-11-06T22:02:09Z FATAL Fatal error init error: DB error: failed to download vulnerability DB: OCI artifact error: failed to download vulnerability DB: failed to download artifact from any source: 1 error occurred:
* oci download error: failed to fetch the layer: GET https://ghcr.io/v2/aquasecurity/trivy-db/blobs/sha256:93e3f923d708457a8fe7609d165d53941ecb965f9404de7399651df5621a69e6: TOOMANYREQUESTS: retry-after: 610.321µs, allowed: 44000/minute
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (node)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (node)
2024-11-06T22:02:09Z INFO [vulndb] Need to update DB
2024-11-06T22:02:09Z INFO [vulndb] Downloading vulnerability DB...
2024-11-06T22:02:09Z INFO [vulndb] Downloading artifact... repo="ghcr.io/aquasecurity/trivy-db:2"
2024-11-06T22:02:09Z ERROR [vulndb] Failed to download artifact repo="ghcr.io/aquasecurity/trivy-db:2" err="OCI repository error: 1 error occurred:\n\t* GET https://ghcr.io/v2/aquasecurity/trivy-db/manifests/2: TOOMANYREQUESTS: retry-after: 242.62µs, allowed: 44000/minute\n\n"
2024-11-06T22:02:09Z FATAL Fatal error init error: DB error: failed to download vulnerability DB: OCI artifact error: failed to download vulnerability DB: failed to download artifact from any source: 1 error occurred:
* OCI repository error: 1 error occurred:
* GET https://ghcr.io/v2/aquasecurity/trivy-db/manifests/2: TOOMANYREQUESTS: retry-after: 242.62µs, allowed: 44000/minute
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (php-cli)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (php-cli)
2024-11-06T22:02:07Z INFO [vulndb] Need to update DB
2024-11-06T22:02:07Z INFO [vulndb] Downloading vulnerability DB...
2024-11-06T22:02:07Z INFO [vulndb] Downloading artifact... repo="ghcr.io/aquasecurity/trivy-db:2"
2024-11-06T22:02:09Z INFO [vulndb] Artifact successfully downloaded repo="ghcr.io/aquasecurity/trivy-db:2"
2024-11-06T22:02:09Z INFO [vuln] Vulnerability scanning is enabled
2024-11-06T22:02:09Z INFO [secret] Secret scanning is enabled
2024-11-06T22:02:09Z INFO [secret] If your scanning is slow, please try '--scanners vuln' to disable secret scanning
2024-11-06T22:02:09Z INFO [secret] Please see also https://aquasecurity.github.io/trivy/v0.57/docs/scanner/secret#recommendation for faster secret detection
2024-11-06T22:02:09Z FATAL Fatal error image scan error: scan error: unable to initialize a scanner: unable to initialize an image scanner: unable to find the specified image "ghcr.io/dpc-sdp/bay/php-cli:" in ["docker" "containerd" "podman" "remote"]: 4 errors occurred:
* docker error: unable to inspect the image (ghcr.io/dpc-sdp/bay/php-cli:): Error response from daemon: invalid reference format
* containerd error: parse error: invalid reference format
* podman error: unable to inspect the image (ghcr.io/dpc-sdp/bay/php-cli:): failed to find image ghcr.io/dpc-sdp/bay/php-cli:: invalid reference format
* remote error: GET https://ghcr.io/v2/dpc-sdp/bay/php-cli/manifests/latest: MANIFEST_UNKNOWN: manifest unknown
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (mailpit)
The job was canceled because "ci-builder" failed.
|
Scan for vulnerabilities on 5.x images / vulnerability-scan (mailpit)
The operation was canceled.
|