🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: sop-service
Branch: ldev
Build: #197
Date: 2026-03-17 11:21:41

0

Critical

1

High

2

Medium

0

Low

0

Secrets

1

Misconfig

🔴 Vulnerabilities (2)
SeverityCVE IDPackageInstalledFixed InDescription
MEDIUM CVE-2024-35195 requests 2.31.0 2.32.0 requests: subsequent requests to the same host ignore cert verification
MEDIUM CVE-2024-47081 requests 2.31.0 2.32.4 requests: Requests vulnerable to .netrc credentials leak via malicious URLs
🔑 Secrets (0)
TypeFileLineMatch
✅ No secrets found
⚙️ Misconfigurations (1)
SeverityIDCheckFileMessage
HIGH DS-0002 Image user should not be 'root' Dockerfile Specify at least 1 USER command in Dockerfile with non-root user as argument
📄 Raw JSON Report (click to expand)