Visão geral das avaliações de vulnerabilidades de software
Mantenha tudo organizado com as coleções
Salve e categorize o conteúdo com base nas suas preferências.
O Security Command Center oferece vários serviços que detectam vulnerabilidades em
contêineres, sistemas operacionais e softwares encontrados em VMs e aplicativos
da Web. Onde as vulnerabilidades podem ser detectadas depende do serviço em nuvem
que você está usando.
As descobertas desse serviço têm uma categoria de
CONTAINER_IMAGE_VULNERABILITY.
Painel de postura de segurança do Kubernetes:
fornece descobertas opinativas e acionáveis sobre possíveis problemas de segurança
nos clusters do Google Kubernetes Engine (GKE).
As descobertas desse serviço são emitidas nas classes de descoberta VULNERABILITY e
MISCONFIGURATION.
VM Manager:
identifica vulnerabilidades em sistemas operacionais instalados em VMs,
incluindo vulnerabilidades e exposições comuns (CVEs, na sigla em inglês).
As descobertas desse serviço têm a categoria OS_VULNERABILITY.
Avaliação de vulnerabilidade para Google Cloud:
ajuda a descobrir vulnerabilidades de software críticas e de alta gravidade nas
instâncias de VM do Compute Engine sem instalar agentes.
As descobertas desse serviço têm as categorias OS_VULNERABILITY e
SOFTWARE_VULNERABILITY.
Web Security Scanner:
identifica vulnerabilidades de segurança nos aplicativos da Web do App Engine,
GKE e Compute Engine.
[[["Fácil de entender","easyToUnderstand","thumb-up"],["Meu problema foi resolvido","solvedMyProblem","thumb-up"],["Outro","otherUp","thumb-up"]],[["Difícil de entender","hardToUnderstand","thumb-down"],["Informações incorretas ou exemplo de código","incorrectInformationOrSampleCode","thumb-down"],["Não contém as informações/amostras de que eu preciso","missingTheInformationSamplesINeed","thumb-down"],["Problema na tradução","translationIssue","thumb-down"],["Outro","otherDown","thumb-down"]],["Última atualização 2025-09-04 UTC."],[],[],null,["Security Command Center offers multiple services that detect vulnerabilities in\ncontainers, the operating systems and software found in VMs, and web\napplications. Where vulnerabilities can be detected depends on the cloud service\nyou're using.\n\n\u003cbr /\u003e\n\nAWS\n\n[**Vulnerability Assessment for AWS**](/security-command-center/docs/vulnerability-assessment-aws-overview):\nDetects vulnerabilities in the following AWS resources:\n\n- Software packages installed on [Amazon EC2 instances](https://aws.amazon.com/ec2/).\n- Software packages and operating system misconfigurations in Elastic Container Registry (ECR) images.\n\nThe findings from this service have a category of `SOFTWARE_VULNERABILITY`.\n\nGoogle Cloud\n\n- [**Artifact Registry vulnerability assessment**](/security-command-center/docs/concepts-security-sources#ar-vuln-assessment):\n Finds vulnerabilities in container images stored in Artifact Registry or\n deployed to one of the following assets:\n\n - App Engine\n - Cloud Run job\n - Cloud Run\n - Google Kubernetes Engine cluster\n\n The findings from this service have a category of\n `CONTAINER_IMAGE_VULNERABILITY`.\n- [**Kubernetes security posture dashboard**](/security-command-center/docs/concepts-security-sources#gke-security-posture-dashboard):\n Provides opinionated, actionable findings about potential security issues\n in your Google Kubernetes Engine (GKE) clusters.\n\n The findings from this service are issued in the `VULNERABILITY` and\n `MISCONFIGURATION` finding classes.\n- [**VM Manager**](/security-command-center/docs/concepts-security-sources#vm_manager):\n Identifies vulnerabilities in operating systems that are installed on VMs,\n including Common Vulnerabilities and Exposures (CVEs).\n\n The findings from this service have a category of `OS_VULNERABILITY`.\n- [**Vulnerability Assessment for Google Cloud**](/security-command-center/docs/vulnerability-assessment-google-cloud):\n Helps to discover critical and high severity software vulnerabilities in\n your Compute Engine VM instances without installing agents.\n\n The findings from this service have categories of `OS_VULNERABILITY` and\n `SOFTWARE_VULNERABILITY`.\n- [**Web Security Scanner**](/security-command-center/docs/concepts-web-security-scanner-overview):\n Identifies security vulnerabilities in your App Engine,\n GKE, and Compute Engine web applications."]]