Commit 17fa045
fix: skip packages without SBOM during vulnerability scanning
When vulnerability scanning is enabled, packages cached before SBOM was
enabled or before the external SBOM feature (v0.16.0-rc9) may not have
SBOM files. Previously, this caused the build to fail with:
SBOM file not found in package archive for package <name>
Now, packages without SBOM files are skipped with a warning message,
allowing the vulnerability scan to continue for other packages.
Co-authored-by: Ona <[email protected]>1 parent eb5e08c commit 17fa045
1 file changed
+7
-3
lines changed| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
129 | 129 | | |
130 | 130 | | |
131 | 131 | | |
132 | | - | |
133 | | - | |
134 | | - | |
| 132 | + | |
| 133 | + | |
| 134 | + | |
| 135 | + | |
| 136 | + | |
| 137 | + | |
| 138 | + | |
135 | 139 | | |
136 | 140 | | |
137 | 141 | | |
| |||
0 commit comments