trivy vulnerability

  1. CISA Adds Trivy CVE-2026-33634 to KEV: Patch Supply Chain Risk Now

    CISA’s latest addition to the Known Exploited Vulnerabilities (KEV) Catalog is a sharp reminder that software supply chain risk is no longer an abstract concern for security teams. On March 26, 2026, the agency added CVE-2026-33634, described as an Aqua Security Trivy embedded malicious code...