🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: eizen-chat-utils
Branch: ldev
Build: #28
Date: 2026-05-05 12:59:44

0

Critical

1

High

5

Medium

0

Low

0

Secrets

1

Misconfig

🔴 Vulnerabilities (5)
SeverityCVE IDPackageInstalledFixed InDescription
MEDIUM CVE-2026-22815 aiohttp 3.13.3 3.13.4 aiohttp: AIOHTTP: Denial of Service via insufficient header/trailer handling
MEDIUM CVE-2026-34515 aiohttp 3.13.3 3.13.4 aiohttp: AIOHTTP: Information disclosure via static resource handler on Windows
MEDIUM CVE-2026-34516 aiohttp 3.13.3 3.13.4 aiohttp: AIOHTTP: Denial of Service via excessive multipart headers
MEDIUM CVE-2026-34525 aiohttp 3.13.3 3.13.4 aiohttp: aiohttp: Security bypass via multiple Host headers
MEDIUM CVE-2026-25645 requests 2.32.5 2.33.0 requests: Requests: Security bypass due to predictable temporary file creation
🔑 Secrets (0)
TypeFileLineMatch
✅ No secrets found
⚙️ Misconfigurations (1)
SeverityIDCheckFileMessage
HIGH DS002 Image user should not be 'root' Dockerfile Specify at least 1 USER command in Dockerfile with non-root user as argument
📄 Raw JSON Report (click to expand)