Skip to content

Merge pull request #73 from sysdiglabs/run-build-from-other-branches #33

Merge pull request #73 from sysdiglabs/run-build-from-other-branches

Merge pull request #73 from sysdiglabs/run-build-from-other-branches #33

GitHub Actions / Scan results for localbuild/promcat-jmx-exporter:latest failed Nov 3, 2023 in 0s

Inline scan results for localbuild/promcat-jmx-exporter:latest

Scan result is Failed

Annotations

Check warning on line 1 in Dockerfile

See this annotation in the file changed.

@github-actions github-actions / Scan results for localbuild/promcat-jmx-exporter:latest

warn dockerfile

warn dockerfile:instruction
Dockerfile directive 'HEALTHCHECK' not found, matching condition 'not_exists' check

Check warning on line 1 in Dockerfile

See this annotation in the file changed.

@github-actions github-actions / Scan results for localbuild/promcat-jmx-exporter:latest

warn dockerfile

warn dockerfile:instruction
Dockerfile directive 'USER' not found, matching condition 'not_exists' check

Check failure on line 1 in Dockerfile

See this annotation in the file changed.

@github-actions github-actions / Scan results for localbuild/promcat-jmx-exporter:latest

stop vulnerabilities

stop vulnerabilities:package
CRITICAL Vulnerability found in non-os package type (java) - /opt/jmx_exporter/jmx_prometheus_httpserver-0.17.3.jar:snakeyaml (fixed in: 2.0)(VULNDB-306736 - http://sysdigcloud-anchore-api:8228/v1/query/vulnerabilities?id=VULNDB-306736)

Check warning on line 1 in Dockerfile

See this annotation in the file changed.

@github-actions github-actions / Scan results for localbuild/promcat-jmx-exporter:latest

Vulnerability found: VULNDB-306736

VULNDB-306736 Severity=Critical Package=snakeyaml-1.32 Type=java Fix=2.0 Url=https://secure.sysdig.com/#/scanning/vulnerabilities/VULNDB-306736