summaryrefslogtreecommitdiff
path: root/.grype.yaml
diff options
context:
space:
mode:
Diffstat (limited to '.grype.yaml')
-rw-r--r--.grype.yaml4
1 files changed, 4 insertions, 0 deletions
diff --git a/.grype.yaml b/.grype.yaml
new file mode 100644
index 00000000..e65794d2
--- /dev/null
+++ b/.grype.yaml
@@ -0,0 +1,4 @@
+ignore:
+ # temporary ignore this CVE as false positive on the Go package
+ - vulnerability: CVE-2015-5237
+ - vulnerability: CVE-2021-22570