@@ -752,7 +752,7 @@ Scanned <rootdir>/testdata/sbom-insecure/only-unimportant.spdx.json file and fou
752
752
Scanned <rootdir>/testdata/sbom-insecure/postgres-stretch.cdx.xml file and found 136 packages
753
753
Scanned <rootdir>/testdata/sbom-insecure/with-duplicates.cdx.xml file and found 17 packages
754
754
Filtered 9 local/unscannable package/s from the scan.
755
- Total 26 packages affected by 156 known vulnerabilities (19 Critical, 62 High, 38 Medium, 1 Low, 36 Unknown) from 4 ecosystems.
755
+ Total 26 packages affected by 157 known vulnerabilities (19 Critical, 62 High, 38 Medium, 1 Low, 37 Unknown) from 4 ecosystems.
756
756
8 vulnerabilities can be fixed.
757
757
758
758
@@ -841,6 +841,7 @@ Total 26 packages affected by 156 known vulnerabilities (19 Critical, 62 High, 3
841
841
| https://osv.dev/CVE-2021-3537 | 5.9 | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
842
842
| https://osv.dev/CVE-2021-3541 | 6.5 | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
843
843
| https://osv.dev/CVE-2022-23308 | 7.5 | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
844
+ | https://osv.dev/CVE-2025-9714 | | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
844
845
| https://osv.dev/DSA-4539-1 | 4.7 | Debian | openssl | 1.1.0l-1~deb9u5 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
845
846
| https://osv.dev/DSA-4539-3 | | Debian | openssl | 1.1.0l-1~deb9u5 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
846
847
| https://osv.dev/DSA-4661-1 | 7.5 | Debian | openssl | 1.1.0l-1~deb9u5 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
@@ -3288,7 +3289,7 @@ Scanned <rootdir>/testdata/sbom-insecure/postgres-stretch.cdx.xml file and found
3288
3289
Loaded Debian local db from <tempdir>/osv-scanner/Debian/all.zip
3289
3290
Loaded Go local db from <tempdir>/osv-scanner/Go/all.zip
3290
3291
Loaded OSS-Fuzz local db from <tempdir>/osv-scanner/OSS-Fuzz/all.zip
3291
- Total 21 packages affected by 149 known vulnerabilities (16 Critical, 60 High, 38 Medium, 1 Low, 34 Unknown) from 2 ecosystems.
3292
+ Total 21 packages affected by 150 known vulnerabilities (16 Critical, 60 High, 38 Medium, 1 Low, 35 Unknown) from 2 ecosystems.
3292
3293
8 vulnerabilities can be fixed.
3293
3294
3294
3295
@@ -3370,6 +3371,7 @@ Total 21 packages affected by 149 known vulnerabilities (16 Critical, 60 High, 3
3370
3371
| https://osv.dev/CVE-2021-3537 | 5.9 | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3371
3372
| https://osv.dev/CVE-2021-3541 | 6.5 | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3372
3373
| https://osv.dev/CVE-2022-23308 | 7.5 | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3374
+ | https://osv.dev/CVE-2025-9714 | | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3373
3375
| https://osv.dev/DSA-4539-1 | 4.7 | Debian | openssl | 1.1.0l-1~deb9u5 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3374
3376
| https://osv.dev/DSA-4539-3 | | Debian | openssl | 1.1.0l-1~deb9u5 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3375
3377
| https://osv.dev/DSA-4661-1 | 7.5 | Debian | openssl | 1.1.0l-1~deb9u5 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
@@ -3483,7 +3485,7 @@ Scanned <rootdir>/testdata/sbom-insecure/postgres-stretch.cdx.xml file and found
3483
3485
Loaded Debian local db from <tempdir>/osv-scanner/Debian/all.zip
3484
3486
Loaded Go local db from <tempdir>/osv-scanner/Go/all.zip
3485
3487
Loaded OSS-Fuzz local db from <tempdir>/osv-scanner/OSS-Fuzz/all.zip
3486
- Total 21 packages affected by 149 known vulnerabilities (16 Critical, 60 High, 38 Medium, 1 Low, 34 Unknown) from 2 ecosystems.
3488
+ Total 21 packages affected by 150 known vulnerabilities (16 Critical, 60 High, 38 Medium, 1 Low, 35 Unknown) from 2 ecosystems.
3487
3489
8 vulnerabilities can be fixed.
3488
3490
3489
3491
@@ -3565,6 +3567,7 @@ Total 21 packages affected by 149 known vulnerabilities (16 Critical, 60 High, 3
3565
3567
| https://osv.dev/CVE-2021-3537 | 5.9 | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3566
3568
| https://osv.dev/CVE-2021-3541 | 6.5 | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3567
3569
| https://osv.dev/CVE-2022-23308 | 7.5 | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3570
+ | https://osv.dev/CVE-2025-9714 | | Debian | libxml2 | 2.9.4+dfsg1-2.2+deb9u6 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3568
3571
| https://osv.dev/DSA-4539-1 | 4.7 | Debian | openssl | 1.1.0l-1~deb9u5 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3569
3572
| https://osv.dev/DSA-4539-3 | | Debian | openssl | 1.1.0l-1~deb9u5 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
3570
3573
| https://osv.dev/DSA-4661-1 | 7.5 | Debian | openssl | 1.1.0l-1~deb9u5 | -- | testdata/sbom-insecure/postgres-stretch.cdx.xml |
0 commit comments