Skip to main content
🔦

Grype

Fast open-source vulnerability scanner for container images and SBOMs

Security
Grype logo

Grype

Fast open-source vulnerability scanner for container images and SBOMs

Grype is a fast, open-source vulnerability scanner from Anchore that finds known CVEs in container images and SBOMs generated by Syft. It matches packages against NVD, GitHub Security Advisories, and distro-specific vulnerability databases, providing severity ratings and fix version information. Grype integrates into CI pipelines to block builds with critical vulnerabilities, and its machine-readable JSON output enables custom policy enforcement in security gates.

Key Features

  • CVE scanning
  • SBOM integration
  • Container image support
  • NVD database
  • CI/CD gates
  • Open source
#vulnerability-scanning#containers#sbom#cve#open-source

Get Started

Visit Grype
🟢
Free
Completely free to use

Quick Info

Category
Security
Pricing
Free

More Security Tools