Disable vulnerability findings on images (risk-based)
In brief
The page now warns that deleting a disable rule re-enables findings for the affected scope; suppressed findings reappear and affect secure score. It also adds related-content structure and updated metadata.
What Defender admins need to know
Administrators should consider the secure-score impact before deleting a disable rule. No action is required.
Summaries are generated from the documentation change itself.
Documentation change
The comparison below shows only the changed extract. Use the full-page view for complete context.
Disable vulnerability findings on images (risk-based)
Create and manage disable rules for vulnerability findings
- To view or override a disable rule - select **View rule**, make any changes you want, and select **Override rule**.
- To delete a disable rule - select **Delete rule**.
:::image type="content" source="./media/disable-vulnerability-findings-containers/override-rules.png" alt-text="Screenshot showing where to view, delete, or override a rule for vulnerability findings on registry images." lightbox="media/disable-vulnerability-findings-containers/override-rules.png":::
:::image type="content" source="./media/disable-vulnerability-findings-containers/override-rules.png" alt-text="Screenshot showing where to view, delete, or override a rule for vulnerability findings on registry images." lightbox="media/disable-vulnerability-findings-containers/override-rules.png":::
Next stepsRelated content
- To view and remediate vulnerability assessment findings for registry images, see View and remediate vulnerability assessment findings for registry images.
- To learn about agentless container posture, see Agentless container posture.
@@ -2,12 +2,15 @@ title: Disable vulnerability findings on images (risk-based) description: Learn how to create exemptions and disable vulnerability assessment findings for container registry images and running images in Microsoft Defender for Cloud. ms.topic: how-to-ms.date: 06/09/2026+ms.date: 07/03/2026 ai-usage: ai-assisted+ms.custom: msecd-doc-authoring-1013 --- # Disable vulnerability findings on images (risk-based) +## Create and manage disable rules for vulnerability findings+ > [!IMPORTANT] > Disable rules are being deprecated as part of the transition from grouped recommendations to individual recommendations. Use [exemptions](exempt-resource.md) to manage exceptions going forward. For migration guidance, see [Transition from disable rules to exemptions](transition-disable-rules-exemptions.md). @@ -79,9 +82,13 @@ To manage existing disable rules, follow these steps: - To view or override a disable rule - select **View rule**, make any changes you want, and select **Override rule**. - To delete a disable rule - select **Delete rule**. + > [!WARNING]+ > Deleting a disable rule re-enables vulnerability findings for the affected scope. Previously suppressed findings will reappear in the findings list and affect your secure score.+ :::image type="content" source="./media/disable-vulnerability-findings-containers/override-rules.png" alt-text="Screenshot showing where to view, delete, or override a rule for vulnerability findings on registry images." lightbox="media/disable-vulnerability-findings-containers/override-rules.png"::: -## Next steps+<a name="next-steps"></a>+## Related content - To view and remediate vulnerability assessment findings for registry images, see [View and remediate vulnerability assessment findings for registry images](view-and-remediate-vulnerability-assessment-findings.md). - To learn about agentless container posture, see [Agentless container posture](concept-agentless-containers.md). 