-
Notifications
You must be signed in to change notification settings - Fork 602
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
SARIF output not compatible with GitHub #1518
Labels
bug
Something isn't working
Comments
👋 Thanks for the report @stevehipwell - looks like the |
Thanks @spiffcs, I thought that might be the issue based on validating the file but wasn't certain. |
2 tasks
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
What happened:
Since the
v0.68.1
(possibly thev0.68.0
) release the SARIF output is no longer compatible with GitHub via thegithub/codeql-action/upload-sarif
action.What you expected to happen:
SARIF files generated from Grype should be compatible with GitHub.
How to reproduce it (as minimally and precisely as possible):
Scan an OCI image with Grype and set the output to SARIF, then attempt to upload it to the GitHub CodeQL endpoint.
Anything else we need to know?:
n/a
Environment:
grype version
:grype 0.69.0
cat /etc/os-release
or similar): Ubuntu 22.04 (GH Runner)The text was updated successfully, but these errors were encountered: