Skip to content

Let a suppression expire to prevent that one will forget to resolve a vulnerability #3031

@sbp-bvanb

Description

@sbp-bvanb

What would you like to be added:

When suppressing vulnerabilities, it should be possible to set an expiry.

Why is this needed:

To prevent that one will forget to resolve a vulnerability.

Additional context:

.grype.yaml

---
ignore:
  - vulnerability: GHSA-9493-h29p-rfm2
    package:
      name: github.com/opencontainers/runc
      version: v1.2.3
    expiry: 2025-12-05

Metadata

Metadata

Assignees

No one assigned

    Labels

    enhancementNew feature or request

    Type

    No type

    Projects

    Status

    Done

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions