Sumit Gupta

Results 2 comments of Sumit Gupta

Would like to add that with scan tool [Xray](https://jfrog.com/help/r/get-started-with-the-jfrog-platform/jfrog-xray) there are many more vulnerabilities reported in cluster-autoscaler `v1.23.0` as well as `v1.23.1` ``` Security Violations ┌──────────┬───────────────────────────┬─────────┬───────────────────────────┬───────────────────────────┬───────────────────────────┬──────┬────────────────┐ │ SEVERITY │ DIRECT...

We have also scanned the prom-adapter v0.11.2 image with ORCA and it found some more CVEs as mentioned below | CVE | Package | |----|----| |CVE-2023-47108 | go.opentelemetry.io/contrib/instrumentation/google.golang.org/grpc/otelgrpc | |CVE-2023-45142...