You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
What happened:
The SBOM scanner reported many false positive vulnerabilities What you expected to happen:
Not to report false positives vulnerabilities How to reproduce it (as minimally and precisely as possible):
Use the following SBOM, all findings are false positive:
What happened:
The SBOM scanner reported many false positive vulnerabilities
What you expected to happen:
Not to report false positives vulnerabilities
How to reproduce it (as minimally and precisely as possible):
Use the following SBOM, all findings are false positive:
poc-sbom.json
grype command:
grype.exe sbom:"C:\path\to\bom.json"
Anything else we need to know?:
The following are identified false positives:
Additional misidentified packages that leads to false positive results:
Tool Output:
Environment:
Application: grype
Version: 0.89.1
BuildDate: 2025-03-13T20:22:27Z
GitCommit: 718ea30
GitDescription: v0.89.1
Platform: windows/amd64
GoVersion: go1.24.1
Compiler: gc
Syft Version: v1.20.0
Supported DB Schema: 6
The text was updated successfully, but these errors were encountered: