Skip to main content

OS security updates

  • Linux kernel and kernel package vulnerabilities.
  • Microsoft Windows vulnerabilities related to out-of-date versions, missing security updates or security patches.

OS packages

Workload scanner will report on packages provided by vendors (e.g. Ubuntu, RedHat) and OS package managers (e.g. yum, apk, dpkg, etc.).
Workload scanner does not report on self-compiled packages or binaries.

Programming language specific packages

Workload scanner will report on packages managed by language specific package managers (e.g. npm, yarn, pip, gem, etc.) and the related manifest files and post-build artifacts (e.g. package.json, package-lock.json, yarn.lock, Pipfile.lock, requirements.txt, Gemfile.lock, gemspec, etc.).