A cloud-native solution that protects workloads across hybrid and multi-cloud environments with threat detection and security recommendations
The supported checks for this symptom are:
- Verify that the subscription has Defender for Containers or Defender CSPM enabled, and that Registry access is turned on for the relevant scope. Registry vulnerability assessment requires Registry access to be enabled.
- In the Azure portal, go to Microsoft Defender for Cloud > Environment settings > select the subscription > Settings, and confirm the registry image vulnerability assessment capability is enabled.
- In Microsoft Defender for Cloud > Recommendations, use the Vulnerabilities category, switch to Flat list, add the Resource type filter, and select Container Image. This is the supported view for registry image findings.
- Allow for scan latency. Defender for Cloud notes that some assessment scans can take up to 24 hours to reflect in the dashboard.
For the exact scenario where findings for ACR images are missing even though registry scanning is enabled, the documented guidance is to open a support case and provide:
- registry name
- image name
- image digest
- expected finding details
The available documentation does not confirm a known issue or a specific sync problem related to the Defender Vulnerability Management engine transition.