Clair Scan

You can import JSON reports of Docker image vulnerabilities found by a Clair scan or the Clair Klar client.

Sample Scan Data

Sample Clair Scan scans can be found here.

Default Deduplication Hashcode Fields

By default, DefectDojo identifies duplicate Findings using these hashcode fields:

  • title
  • vulnerability ids
  • description
  • severity