ci: suppress CVE-2026-25210 (libexpat1, no fix available) (#230)

Integer overflow in libexpat1 2.7.1-2 with no patched version in
Debian repos yet.  Suppress in Trivy until a fix is published.
This commit is contained in:
Patrick Buckley
2026-03-29 15:35:20 -07:00
committed by GitHub
parent 7cb21b84f1
commit 976e9df3b6
+4
View File
@@ -0,0 +1,4 @@
# libexpat integer overflow — no fix available in Debian repos yet
# https://avd.aquasec.com/nvd/cve-2026-25210
# Review: remove this entry once a patched libexpat1 is published
CVE-2026-25210