Skip to content

Commit 5a7be0c

Browse files
committed
TMP: ignore CVE-2024-24790 and CVE-2025-7783 vulnerabilities
CVE-2024-24790 in prometheus exporters: control plane is trusted CVE-2025-7783 in opensearch dashboards: will check if a more recent package is available later
1 parent 377b198 commit 5a7be0c

File tree

1 file changed

+6
-0
lines changed

1 file changed

+6
-0
lines changed

etc/kayobe/trivy/allowed-vulnerabilities.yml

Lines changed: 6 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -20,7 +20,10 @@ influxdb_allowed_vulnerabilities:
2020
- CVE-2024-45337
2121
magnum_conductor_allowed_vulnerabilities:
2222
- CVE-2024-45337
23+
opensearch_dashboards_allowed_vulnerabilities:
24+
- CVE-2025-7783
2325
prometheus_blackbox_exporter_allowed_vulnerabilities:
26+
- CVE-2024-24790
2427
- CVE-2024-45337
2528
prometheus_memcached_exporter_allowed_vulnerabilities:
2629
- CVE-2024-45337
@@ -31,7 +34,10 @@ prometheus_elasticsearch_exporter_allowed_vulnerabilities:
3134
prometheus_node_exporter_allowed_vulnerabilities:
3235
- CVE-2024-45337
3336
prometheus_openstack_exporter_allowed_vulnerabilities:
37+
- CVE-2024-24790
3438
- CVE-2024-45337
39+
prometheus_ovn_exporter_allowed_vulnerabilities:
40+
- CVE-2024-24790
3541
prometheus_libvirt_exporter_allowed_vulnerabilities:
3642
- CVE-2024-45337
3743
prometheus_cadvisor_allowed_vulnerabilities:

0 commit comments

Comments
 (0)