Skip to content

Releases: stackrox/scanner

2.7.1

05 Dec 19:18
50bbe6d

Choose a tag to compare

2.7.0

13 Nov 02:43
69b9d12

Choose a tag to compare

  • Add ubuntu:20.10 support
  • Add distroless support
  • Add k8s vulns to definitions.stackrox.io
  • Fix .NET and ASP.NET vulnerability CPEs

2.6.0

22 Oct 17:39
6a2c818

Choose a tag to compare

  • Return exact (x.y.z) .NET Core runtime and ASP.NET Core runtime versions (opposed to x.y)
  • Reduce false-positive rate of Java and Ruby vulnerabilities

2.5.0

01 Oct 00:31
49e34e9

Choose a tag to compare

  • Turn on ROX_CONTINUE_UNKNOWN_OS by default
  • Use Red Hat's CVSS scores for RHEL/CentOS-based images
  • Add .NET Core Runtime application-level support

2.4.1

08 Sep 19:37
e5ee6fc

Choose a tag to compare

  • Update Genesis Manifest

2.4.0

08 Sep 18:19
81486ce

Choose a tag to compare

2.4.0 Pre-release
Pre-release
  • Add Image Scan notes
  • Fix image severity labels
  • Make cpe check deterministic

2.3.3

02 Sep 23:47

Choose a tag to compare

Fix change which disabled LANGUAGE_VULNS in favor of ROX_LANGUAGE_VULNS. Now both are allowed, but ROX_LANGUAGE_VULNS takes precedence.

2.3.2

17 Aug 17:23
21b1984

Choose a tag to compare

Update Amazon support
Update Oracle and Red Hat support
[ROX-5374] Add support for continuing upon unknown OS
[ROX-5382] update alpine vuln src
[ROX-5394] Fix potential resource not found error in features
[ROX-5392] Add RHEL6 unpublished oval
Update genesis dump

2.3.1

28 Jul 23:18
cc6dc1c

Choose a tag to compare

[ROX-5341] NVD cache does not un-associate CVEs and products upon deletion

2.3.0

27 Jul 20:01
5e6a1df

Choose a tag to compare

Several fixes + Update of Genesis Dump