trivy
Verified for current stable LTS
Trivy Command: Scan Filesystem For Vulnerabilities And Misconfigurations
Use for scan filesystem for vulnerabilities and misconfigurations with Trivy. Exact CLI syntax to scan filesystem for vulnerabilities and misconfigurations using Trivy.
When to use this: Use for scan filesystem for vulnerabilities and misconfigurations with Trivy.
Command Syntax
trivy fs --security-checks <vuln,config> <path/to/project_directory> trivy fs --security-checks <vuln,config> <path/to/project_directory> Command Breakdown
--security-checks- Command Option
- Tool-specific option used by this command invocation.
FAQ
Purpose: Exact syntax to scan filesystem for vulnerabilities and misconfigurations using Trivy.
Test path: Replace placeholders and run destructive commands in a disposable workspace first.
Flag behavior: Tool version, platform, and shell can change behavior.
Improve This Command
Suggest a correction, safer default, or version-specific note for this entry.
Related Operations
Trivy Command: Generate Sarif Report Output
trivy image -f <template> -t "<@sarif.tpl>" -o <path/to/report.sarif> {image:tag} Trivy Command: Scan Docker Image Filter Output By Severity trivy image -s <HIGH,CRITICAL> {alpine:3.15} Trivy Command: Scan Docker Image For Vulnerabilities trivy image {image:tag} Trivy Command: Scan Docker Image Ignore Unfixed Vulnerabilities trivy image --ignore-unfixed {alpine:3.15} Trivy Command: Scan Git Repo Up To Specific Commit Hash trivy repo --commit <commit_hash> <repository>