Scans SBoMs for security vulnerabilities
quay.io/trickest/bomber:v0.3.2
--debug
Displays debug level log messages.--token
The API token for the provider being used.--output
How bomber should output findings (json, xml, stdout) (default stdout)--provider
The vulnerability provider (ossindex, osv). (default osv)--username
The user name for the provider being used.
Single SBOM file
Scan a folder of SBOMs