From ae4f9e288971ce2f1493be5b0f2e5e19f7df8bf4 Mon Sep 17 00:00:00 2001 From: zondervancalvez Date: Fri, 27 May 2022 16:24:46 +0800 Subject: [PATCH] fix(security): vulnerabilities found in cactus-rust-compiler This fix will ignore AsymmetricPrivateKey (private-key) Fixes #2042 Signed-off-by: zondervancalvez --- trivy-secret.yaml | 2 ++ 1 file changed, 2 insertions(+) create mode 100644 trivy-secret.yaml diff --git a/trivy-secret.yaml b/trivy-secret.yaml new file mode 100644 index 0000000000..0393e39579 --- /dev/null +++ b/trivy-secret.yaml @@ -0,0 +1,2 @@ +disable-rules: + - private-key