🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: eizen-llava-inference
Branch: ldev
Build: #154
Date: 2026-02-27 15:51:43

0

Critical

2

High

0

Medium

0

Low

2

Secrets

1

Misconfig

🔴 Vulnerabilities (1)
SeverityCVE IDPackageInstalledFixed InDescription
HIGH CVE-2026-25990 pillow 11.1.0 12.1.1 pillow: Pillow: Out-of-bounds Write via Specially Crafted PSD Image
🔑 Secrets (2)
TypeFileLineMatch
GitHub security-reports/gitleaks-report.json 30 "Match": "**************************************...
GitHub security-reports/gitleaks-report.json 31 "Secret": "*************************************...
⚙️ Misconfigurations (1)
SeverityIDCheckFileMessage
HIGH DS-0029 'apt-get' missing '--no-install-recommends' Dockerfile '--no-install-recommends' flag is missed: 'apt-get update && apt-get install -y software-propert
📄 Raw JSON Report (click to expand)