Versions:

  • 0.110.0
  • 0.109.1
  • 0.109.0
  • 0.108.0
  • 0.107.1
  • 0.107.0
  • 0.106.0
  • 0.105.0
  • 0.104.4
  • 0.104.3
  • 0.104.2
  • 0.104.1
  • 0.104.0
  • 0.103.0
  • 0.102.0
  • 0.101.1
  • 0.101.0
  • 0.100.0
  • 0.99.1
  • 0.99.0
  • 0.98.0
  • 0.97.2
  • 0.97.1
  • 0.97.0
  • 0.96.0
  • 0.95.0
  • 0.94.0
  • 0.93.0
  • 0.92.2
  • 0.92.1
  • 0.91.2
  • 0.91.1
  • 0.91.0
  • 0.90.0
  • 0.89.1
  • 0.89.0
  • 0.88.0
  • 0.87.0
  • 0.86.1
  • 0.86.0
  • 0.85.0
  • 0.84.0
  • 0.79.1
  • 0.74.2
  • 0.69.0

Anchore Grype 0.110.0 is a container and filesystem vulnerability scanner developed by Anchore Inc., designed to give DevOps and security teams a fast, reliable way to surface known CVEs in Linux images, application layers, and directory trees. The command-line tool ingests a Software Bill of Materials (SBOM) produced by Anchore’s companion utility Syft or any CycloneDX/SPDX-compatible feed, then matches the enumerated packages against continuously updated vulnerability databases drawn from GitHub Advisories, Alpine, Red Hat, Debian, and other upstream security trackers. Typical use cases include gatekeeping CI/CD pipelines, performing pre-deployment checks in Kubernetes environments, auditing third-party base images, and generating compliance evidence for containerized workloads. Grype’s lightweight single-binary distribution installs in seconds on macOS, Linux, or Windows, requires no daemon, and can scan both local Docker archives and remote OCI tarballs without elevated privileges. Since its first public release the project has evolved through forty-five numbered versions, adding JSON and table output formats, configurable fail-on-severity thresholds, and an experimental “vulnerability fixed-in” hinting system that helps engineers prioritize patching by showing exactly which package upgrade closes a given CVE. The scanner is frequently embedded in GitHub Actions, GitLab CI, Jenkins, and Tekton pipelines, where it can break builds when critical issues are detected or export SARIF reports for GitHub Security tab integration. Grype is available for free on get.nero.com, with downloads provided via trusted Windows package sources such as winget, always delivering the latest version and supporting batch installation of multiple applications.

Tags: