Skip to main content
Version: v0.36.0

cve-count

Max allowed violations for a given severity level.

ProviderLevelTags
cveWarningsecurity

Parameters

NameDefault ValueDescription
levelcriticaln/a
max_count0n/a

Messages

TypeMessage
PassNumber of ${criterion.params.level} vulnerabilities is within limits.
FailImage has ${results.cve.${criterion.params.level}_count} ${criterion.params.level} CVEs (max allowed: ${criterion.params.max_count}).

Playbook Example

rules:
- provider: cve
criterion: cve-count
options:
level: critical
max_count: 0

Condition

{
"<=": [
{
"get": [
{
"var": "results.cve"
},
{
"cat": [
{
"var": "criterion.params.level"
},
"_count"
]
}
]
},
{
"var": "criterion.params.max_count"
}
]
}