BREAKING CHANGE: change 'trivy sbom' to scan SBOM #2407
knqyf263
announced in
Announcements
Replies: 1 comment
-
I am using it this way ...
|
Beta Was this translation helpful? Give feedback.
0 replies
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
-
Summary
Replace
trivy sbom
with--format cyclonedx
,--format spdx
, etc.Before
trivy sbom
used to generate the SBOM output.or
After
trivy sbom
is for scanning SBOM from v0.30.0. Instead, you can generate the SBOM output with the--format
flag that is available under each subcommand likeimage
andfs
.or
Affected versions
v0.30.0 or greater
Description
To be consistent with other trivy subcommands, we are changing
trivy sbom
to scan SBOM for vulnerabilities, rather than generate SBOM.trivy image
scans container imagestrivy fs
scans filesystemstriivy sbom
scans SBOM from v0.30.0Beta Was this translation helpful? Give feedback.
All reactions