tl;dr : alpine sux, clairscan misses things
la suite :
https://kubedex.com/follow-up-container-scanning-comparison/
je garde ça sous le coude
git clone https://github.com/Hadesy2k/sqlivulscan.git