Skip to content

Commit 8f028e7

Browse files
UID2-6837: Silence CVE-2025-67030 (plexus-utils from Maven base image)
1 parent 48883a4 commit 8f028e7

1 file changed

Lines changed: 4 additions & 0 deletions

File tree

.trivyignore

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -1,3 +1,7 @@
11
# List any vulnerability that are to be accepted
22
# See https://aquasecurity.github.io/trivy/v0.35/docs/vulnerability/examples/filter/
33
# for more details
4+
5+
# UID2-6837
6+
# plexus-utils directory traversal - comes from Maven installation in base image (maven:3.9.11-eclipse-temurin-21), not from our code dependencies. Not exploitable at runtime.
7+
CVE-2025-67030 exp:2026-05-01

0 commit comments

Comments
 (0)