Skip to content

Bump Trivy to 0.69.2 Caracal#2188

Merged
seunghun1ee merged 1 commit intostackhpc/2024.1from
bump-trivy-caracal
Mar 2, 2026
Merged

Bump Trivy to 0.69.2 Caracal#2188
seunghun1ee merged 1 commit intostackhpc/2024.1from
bump-trivy-caracal

Conversation

@seunghun1ee
Copy link
Copy Markdown
Member

Trivy had security incident on 1st March 2026 [1], resulting losing all GitHub Releases between 0.27.0-0.69.1.
They then restored the latest as 0.69.2

[1] https://github.com/aquasecurity/trivy/discussions/10265

(cherry picked from commit 9144c9f)

Trivy had security incident on 1st March 2026 [1], resulting losing all
GitHub Releases between 0.27.0-0.69.1.
They then restored the latest as 0.69.2

[1] https://github.com/aquasecurity/trivy/discussions/10265

(cherry picked from commit 9144c9f)
@seunghun1ee seunghun1ee self-assigned this Mar 2, 2026
@seunghun1ee seunghun1ee requested a review from a team as a code owner March 2, 2026 11:24
Copy link
Copy Markdown
Contributor

@gemini-code-assist gemini-code-assist bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Code Review

This pull request bumps the Trivy version to 0.69.2 due to a security incident with previous releases. The change in tools/scan-images.sh is correct. I've added a suggestion to improve the dependency check by verifying the installed Trivy version, not just its presence, to make the script more robust.

@seunghun1ee seunghun1ee added the Caracal Targets the Caracal OpenStack release label Mar 2, 2026
@seunghun1ee seunghun1ee merged commit 39ea9a6 into stackhpc/2024.1 Mar 2, 2026
23 checks passed
@seunghun1ee seunghun1ee deleted the bump-trivy-caracal branch March 2, 2026 11:31
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Caracal Targets the Caracal OpenStack release

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants