Will Murphy
Will Murphy
Hi @sfc-gh-mhazy, thanks for the request! We plan to make the paths relative as part of the [schema v6 work](https://github.com/anchore/grype-db/issues/108).
Hi @sekveaja this will be fixed by https://github.com/anchore/vunnel/issues/626
@sekveaja - I don't have a particular time estimate right now. We just learned that SUSE also has a CSAF 2.0 vulnerability feed, and were recommended to migrate to it....
This will be fixed either by https://github.com/anchore/grype/issues/1426 or by https://github.com/anchore/vunnel/pull/635 and a small follow-up change to grype, whichever lands first. The reason Syft presently emits both a PyPI and an...
Hi @sekveaja, The cause of these false positives is discussed at https://github.com/anchore/vunnel/issues/626, and the fix will be the resolution of that issue, plus a small Grype PR.
Hi @maskitron thanks for the request! We will try to discuss this at a future community meeting. The reason for the discussion is to try to understand how best to...
Started a more general discussion at https://anchorecommunity.discourse.group/t/how-can-we-make-grypes-output-more-focused/57
Hi @DaddyXz, can you help me understand this request? I think you're asking whether Grype will include vulnerabilities from the [openEuler Linux distro](https://www.openeuler.org/en/)? Is that correct?
I'd love to do this in such a way that all future configs that represent paths have this behavior, maybe a change to Fangs or Clio.
I've added `needs-discussion`. Some things to discuss: 1. Expanding things like `$HOME` and `~` and `$PWD` could make it much easier for teams to build shared Syft/Grype config files. 2....