nerdctl
nerdctl copied to clipboard
Set up VEX to eliminate false-positives from vulnerability scanning tool results
e.g., https://github.com/CycloneDX/bom-examples/tree/master/VEX/Use-Cases/Case-4
For false positives like:
- #1571
Thanks for explanation.
Regards, Sachin. K.
xref: https://github.com/kubernetes/kubernetes/issues/121454
xref: https://github.com/kubernetes/sig-security/issues/116