🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: eizen-sop-service
Branch: ldev
Build: #232
Date: 2026-04-13 12:26:18

0

Critical

1

High

3

Medium

0

Low

0

Secrets

1

Misconfig

🔴 Vulnerabilities (3)
SeverityCVE IDPackageInstalledFixed InDescription
MEDIUM CVE-2024-35195 requests 2.31.0 2.32.0 requests: subsequent requests to the same host ignore cert verification
MEDIUM CVE-2024-47081 requests 2.31.0 2.32.4 requests: Requests vulnerable to .netrc credentials leak via malicious URLs
MEDIUM CVE-2026-25645 requests 2.31.0 2.33.0 requests: Requests: Security bypass due to predictable temporary file creation
🔑 Secrets (0)
TypeFileLineMatch
✅ No secrets found
⚙️ Misconfigurations (1)
SeverityIDCheckFileMessage
HIGH DS002 Image user should not be 'root' Dockerfile Specify at least 1 USER command in Dockerfile with non-root user as argument
📄 Raw JSON Report (click to expand)