Skip to content

Latest commit

 

History

History
50 lines (38 loc) · 1.18 KB

File metadata and controls

50 lines (38 loc) · 1.18 KB

Scans

Image Scan

Language-specific Packages

Use container image

docker run --rm \
  -v /var/run/docker.sock:/var/run/docker.sock \
  -v /tmp/trivycache:/root/.cache/ \
  aquasec/trivy image alpine:latest --timeout 10m

Filesystem scan

Scan the jar files in using gradle.lockfile

docker run --rm \
  -v /tmp/trivycache:/root/.cache/ \
  -v $(pwd)/gradle.lockfile:/root/gradle.lockfile \
  aquasec/trivy fs /root/gradle.lockfile

Rootfs scan

Scan the maven cache for vulnerabilities

docker run --rm \
  -v /var/run/docker.sock:/var/run/docker.sock \
  -v /tmp/trivycache:/root/.cache/ \
  -v $HOME/.m2:/root/.m2/ \
  aquasec/trivy rootfs /root/.m2/
docker run --rm \
  -v /var/run/docker.sock:/var/run/docker.sock \
  -v /tmp/trivycache:/root/.cache/ \
  -v $HOME/.m2:/root/.m2/ \
  aquasec/trivy rootfs /root/.m2/repository/org/iq80/snappy/snappy/0.4/snappy-0.4.jar