x/vuln: SARIF format incorrect for zero results #70157
Labels
NeedsInvestigation
Someone must examine and confirm this is a valid issue and not a duplicate of an existing one.
vulncheck or vulndb
Issues for the x/vuln or x/vulndb repo
Milestone
govulncheck version
Go: go1.22.8
Scanner: [email protected]
DB: https://vuln.go.dev
DB updated: 2024-10-30 21:28:25 +0000 UTC
Does this issue reproduce at the latest version of golang.org/x/vuln?
Yes
Output of
go env
in your module/workspace:What did you do?
Run govulncheck in an empty project.
What did you see happen?
The scan finished and found no vulnerabilities, but the SARIF report contains no
runs.results
field.What did you expect to see?
I expected a
"results": []
field, as described by the SARIF spec.The text was updated successfully, but these errors were encountered: