Vulnerability Coverage

Plerion Workload Scanner will report on vulnerabilities from these software components:

OS Security Updates

  • Linux kernel and kernel package vulnerabilities.
  • Microsoft Windows vulnerabilities related to out-of-date versions, missing security updates or security patches.

OS Packages

Workload scanner will report on packages provided by vendors (e.g. Ubuntu, RedHat) and OS package managers (e.g. yum, apk, dpkg, etc.).

ℹ️

Workload scanner does not report on self-compiled packages or binaries.

OSSecurity Advisory
AlmaLinuxAlmaLinux Product Errata (opens in a new tab)
Alpine LinuxAlpine Security Database (opens in a new tab)
Amazon LinuxAmazon Linux Security Center (opens in a new tab)
Arch LinuxVulnerable issues - Arch Linux (opens in a new tab)
Azure LinuxAzure Linux Vulnerability Data (opens in a new tab)
Chainguard/Wolfi LinuxChainguard Security Advisories (opens in a new tab)
DebianDebian Security Bug Tracker (opens in a new tab)
Microsoft WindowsMicrosoft Security Update Guide (opens in a new tab)
OpenSUSEOpenSUSE Security CVRF (opens in a new tab)
Oracle LinuxOracle Linux Security (opens in a new tab)
Photon OSPhoton Security Advisories (opens in a new tab)
RHEL/CentOSRed Hat Security Data (opens in a new tab)
Rocky LinuxRocky Enterprise Software Foundation Product Errata (opens in a new tab)
UbuntuUbuntu Security CVE Reports (opens in a new tab)

Programming Language Specific Packages

Workload scanner will report on packages managed by language specific package managers (e.g. npm, yarn, pip, gem, etc.) and the related manifest files and post-build artifacts (e.g. package.json, package-lock.json, yarn.lock, Pipfile.lock, requirements.txt, Gemfile.lock, gemspec, etc.).

LanguageSecurity Advisory
C/C++GitLab Advisory Database Open Source Edition (opens in a new tab)
DartGitHub Advisory Database (Pub) (opens in a new tab)
ElixirGitHub Advisory Database (Erlang) (opens in a new tab)
GoGo Vulnerability Database (opens in a new tab)
JavaGitHub Advisory Database (Maven) (opens in a new tab)
JuliaLangGitHub Advisory Database (JuliaLang) (opens in a new tab)
.NETGitHub Advisory Database (NuGet) (opens in a new tab)
Node.jsNode.js Ecosystem Security Working Group (opens in a new tab)
PHPPHP Security Advisories Database (opens in a new tab)
PythonPython Software Foundation Advisory Database (opens in a new tab)
RubyRuby Security Advisory Database (opens in a new tab)
RustRust Security Advisory Database (opens in a new tab)
SwiftGitHub Advisory Database (opens in a new tab)