fix: skip UNK-* and Re cves
#383
Merged
Add this suggestion to a batch that can be applied as a single commit.
This suggestion is invalid because no changes were made to the code.
Suggestions cannot be applied while the pull request is closed.
Suggestions cannot be applied while viewing a subset of changes.
Only one suggestion per line can be applied in a batch.
Add this suggestion to a batch that can be applied as a single commit.
Applying suggestions on deleted lines is not supported.
You must change the existing code in this line in order to create a valid suggestion.
Outdated suggestions cannot be applied.
This suggestion has been applied or marked resolved.
Suggestions cannot be applied from pending reviews.
Suggestions cannot be applied on multi-line comments.
Suggestions cannot be applied while the pull request is queued to merge.
Suggestion cannot be applied right now. Please check back later.
Description
This PR fixes an issue in the Photon OS vulnerability data processing by skipping unknown CVE entries (UNK-* and Re prefixed entries) that lack version information. The fix prevents processing of incomplete or placeholder CVE entries
that don't provide meaningful vulnerability information.
Changes Made
The fix ensures that only meaningful CVE entries with proper version information are processed and stored, while filtering out placeholder or incomplete entries that don't provide actionable vulnerability data.
Examples of these CVEs - aquasecurity/vuln-list@80e4c49#diff-e615c72b692e17b1c1fe08855e258663dd189530fa880d0b7c47a88a4cb7f5d6
Test pipeline run