Get Vulnerability Updates

Data for SBOM Document ID: 279bf08f-d6bb-4df9-b40d-a21e16031836

Key Value
Timestamp 2023-10-20T08:05:02+00:00
Tool Vendor: aquasecurity
Name: trivy
Version: 0.46.0
Component bom-ref: pkg:oci/jenkins@sha256%3Ab728c15f3d9aa442b9ab5d6d6e75f2e5663e4a14f22dfcdac35f83245e76b343?arch=amd64&repository_url=index.docker.io%2Fjenkins%2Fjenkins
Type: container
Name: jenkins/jenkins
purl: pkg:oci/jenkins@sha256%3Ab728c15f3d9aa442b9ab5d6d6e75f2e5663e4a14f22dfcdac35f83245e76b343?arch=amd64&repository_url=index.docker.io%2Fjenkins%2Fjenkins
Total Components

172

6.30 / 10

Vulnerability Severity Distribution

Total Vulnerabilities

58

Critical

2

High

12

Medium

40

Low

4

None

0

Structural

Average: 7.5

# Description Score Score Progress
1 provided sbom is in a supported sbom format of spdx,cyclonedx 10.0
2 provided sbom should be in supported spec version for spec:1.5 and versions: 1.0,1.1,1.2,1.3,1.4 0.0
3 provided sbom should be in supported file format for spec: json and version: json,xml 10.0
4 provided sbom is parsable 10.0

NTIA-minimum-elements

Average: 9.8

# Description Score Score Progress
1 150/173 have supplier names 8.7
2 173/173 have names 10.0
3 172/173 have versions 9.9
4 173/173 have unique ID's 10.0
5 doc has 537 relationships 10.0
6 doc has 1 authors 10.0
7 doc has creation timestamp 2023-10-20T08:05:02+00:00 10.0

Semantic

Average: 3.3

# Description Score Score Progress
1 Doc Fields:true Pkg Fields:true 10.0
2 0/173 have licenses 0.0
3 0/173 have checksums 0.0

Quality

Average: 4.3

# Description Score Score Progress
1 0/173 components with valid license 0.0
2 173/173 components have primary purpose specified 10.0
3 no licenses found 0.0
4 no licenses found 0.0
5 172/173 components have any lookup id 9.9
6 0/173 components have multiple lookup id 0.0
7 1/1 tools have creator and version 10.0

Sharing

Average: 0.0

# Description Score Score Progress
1 doc has a sharable license free 0 :: of 0 0.0