Quiz 6 Question 6 of 20

A DevOps team builds Linux container images in a CI/CD pipeline and pushes them to a private registry. Security wants to catch vulnerable base-image packages and application dependencies before images reach production. Which vulnerability scanning method best addresses risk inherited from the container layer?

Select an answer to reveal the explanation.

Motivation