Will Murphy

Results 361 comments of Will Murphy

Hi @sfc-gh-mhazy, thanks for the request! We plan to make the paths relative as part of the [schema v6 work](https://github.com/anchore/grype-db/issues/108).

@sekveaja - I don't have a particular time estimate right now. We just learned that SUSE also has a CSAF 2.0 vulnerability feed, and were recommended to migrate to it....

This will be fixed either by https://github.com/anchore/grype/issues/1426 or by https://github.com/anchore/vunnel/pull/635 and a small follow-up change to grype, whichever lands first. The reason Syft presently emits both a PyPI and an...

Hi @sekveaja, The cause of these false positives is discussed at https://github.com/anchore/vunnel/issues/626, and the fix will be the resolution of that issue, plus a small Grype PR.

Hi @maskitron thanks for the request! We will try to discuss this at a future community meeting. The reason for the discussion is to try to understand how best to...

Started a more general discussion at https://anchorecommunity.discourse.group/t/how-can-we-make-grypes-output-more-focused/57

Hi @DaddyXz, can you help me understand this request? I think you're asking whether Grype will include vulnerabilities from the [openEuler Linux distro](https://www.openeuler.org/en/)? Is that correct?

I'd love to do this in such a way that all future configs that represent paths have this behavior, maybe a change to Fangs or Clio.

I've added `needs-discussion`. Some things to discuss: 1. Expanding things like `$HOME` and `~` and `$PWD` could make it much easier for teams to build shared Syft/Grype config files. 2....