The development team wants to fail CI jobs where a specific CVE is contained within the image.How should the development team configure the pipeline or policy to produce this outcome?