I am parallely checking with the owners who are the owners to publish the results in the arm respository..I am using cyclonedxbom to detect vulnerabilites.
cnujntu
07/06/2022, 1:46 PM
I tried other option using syft & grype where its not throwing these errors
cnujntu
07/06/2022, 1:46 PM
but here also its scanning same repositories thats mentioned in build.gradle file
cnujntu
07/06/2022, 1:46 PM
any idea why its not throwing these errors when using syft & grype but throwing errors when using cyclonedxbom
n
Niels Doucet
07/07/2022, 7:40 AM
as I haven’t used any of those solutions, I have no clue