vimp
vimp copied to clipboard
add support for osv-scanner reports
Currently osv-scanner only returns vulnerabilities found in base image (Debian and Alpine)
https://google.github.io/osv-scanner/usage/#scanning-a-debian-based-docker-image-packages
osv-scanner --json -D docker.io/mongo@sha256:cc4522f3f5c0d3435046eb51b1d8a633d8e24d8e661b6ba127a98e5519d11bde