diff --git a/ci-tools/vulnerability-scan b/ci-tools/vulnerability-scan index 48bf51e071a398f37565717a22b2066d3f905fbe..cb288a7f3a9ff9a4bd0ff6667f41464711579588 100755 --- a/ci-tools/vulnerability-scan +++ b/ci-tools/vulnerability-scan @@ -42,7 +42,7 @@ fi # (non-whitelisted errors). 3 indicates unexpected error so we let that # propagate. set +e -nix-shell -p vulnix --run 'vulnix --json ./scan-target/' | tee "$OUTPUT" +nix-shell -p vulnix --run "vulnix --json -R $(nix-store -qd $(nix-store -qR./scan-target/)| grep -v "unknown driver" | xargs)" | tee "$OUTPUT" vulnix_status=$? set -e