We wanted to provide you information about a security incident that
we became aware of that affects customers who use the Aqua Security
Vulnerability scanner (Trivy) across multiple distribution channels
including Docker Hub, GitHub, and npm.Between 18:24 UTC on March
19, 2026 and 01:36 UTC on March 23, 2026, Docker Hub customers who
pulled the Trivy images with the 0.69.4,
0.69.5, 0.69.6, and latest
tags may have had their CI/CD secrets, cloud credentials, SSH keys,
and Docker configurations compromised.Around 08:00