-
Notifications
You must be signed in to change notification settings - Fork 0
Commit c264ecb
[Snyk] Security upgrade node from 22.17.1-alpine to 22.20.0-alpine (#279)

### Snyk has created this PR to fix 3 vulnerabilities in the dockerfile
dependencies of this project.
Keeping your Docker base image up-to-date means you’ll benefit from
security fixes in the latest version of your chosen image.
#### Snyk changed the following file(s):
- `Dockerfile`
We recommend upgrading to `node:22.20.0-alpine`, as this image has only
**0** known vulnerabilities. To do this, merge this pull request, then
verify your application still works as expected.
#### Vulnerabilities that will be fixed with an upgrade:
| | Issue | Score |
:-------------------------:|:-------------------------|:-------------------------
 | CVE-2025-9232
<br/>[SNYK-ALPINE322-OPENSSL-13174131](https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-13174131)
| **436**
 | CVE-2025-9232
<br/>[SNYK-ALPINE322-OPENSSL-13174131](https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-13174131)
| **436**
 | CVE-2025-9230
<br/>[SNYK-ALPINE322-OPENSSL-13174132](https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-13174132)
| **436**
 | CVE-2025-9230
<br/>[SNYK-ALPINE322-OPENSSL-13174132](https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-13174132)
| **436**
 | CVE-2025-9231
<br/>[SNYK-ALPINE322-OPENSSL-13174133](https://snyk.io/vuln/SNYK-ALPINE322-OPENSSL-13174133)
| **436**
---
> [!IMPORTANT]
>
> - Check the changes in this PR to ensure they won't cause issues with
your project.
> - Max score is 1000. Note that the real score may have changed since
the PR was raised.
> - This PR was automatically created by Snyk using the credentials of a
real user.
---
**Note:** _You are seeing this because you or someone else with access
to this repository has authorized Snyk to open fix PRs._
For more information: <img
src="https://api.segment.io/v1/pixel/track?data=eyJ3cml0ZUtleSI6InJyWmxZcEdHY2RyTHZsb0lYd0dUcVg4WkFRTnNCOUEwIiwiYW5vbnltb3VzSWQiOiI1OGFiMjhmYy1jYjFhLTRlY2UtOGFhOS0wNmNhOTE2ZDFiODUiLCJldmVudCI6IlBSIHZpZXdlZCIsInByb3BlcnRpZXMiOnsicHJJZCI6IjU4YWIyOGZjLWNiMWEtNGVjZS04YWE5LTA2Y2E5MTZkMWI4NSJ9fQ=="
width="0" height="0"/>
🧐 [View latest project
report](https://app.snyk.io/org/szotkowski/project/783a3d5e-5cbd-444f-a3b9-4823d9957082?utm_source=github&utm_medium=referral&page=fix-pr)
📜 [Customise PR
templates](https://docs.snyk.io/scan-using-snyk/pull-requests/snyk-fix-pull-or-merge-requests/customize-pr-templates?utm_source=github&utm_content=fix-pr-template)
🛠 [Adjust project
settings](https://app.snyk.io/org/szotkowski/project/783a3d5e-5cbd-444f-a3b9-4823d9957082?utm_source=github&utm_medium=referral&page=fix-pr/settings)
📚 [Read about Snyk's upgrade
logic](https://docs.snyk.io/scan-with-snyk/snyk-open-source/manage-vulnerabilities/upgrade-package-versions-to-fix-vulnerabilities?utm_source=github&utm_content=fix-pr-template)
---
**Learn how to fix vulnerabilities with free interactive lessons:**
🦉 [Learn about vulnerability in an interactive lesson of Snyk
Learn.](https://learn.snyk.io/?loc=fix-pr)
[//]: #
'snyk:metadata:{"breakingChangeRiskLevel":null,"FF_showPullRequestBreakingChanges":null,"FF_showPullRequestBreakingChangesWebSearch":null,"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"node","from":"22.17.1-alpine","to":"22.20.0-alpine"}],"env":"prod","issuesToFix":["SNYK-ALPINE322-OPENSSL-13174131","SNYK-ALPINE322-OPENSSL-13174132","SNYK-ALPINE322-OPENSSL-13174133","SNYK-ALPINE322-OPENSSL-13174131","SNYK-ALPINE322-OPENSSL-13174132"],"prId":"58ab28fc-cb1a-4ece-8aa9-06ca916d1b85","prPublicId":"58ab28fc-cb1a-4ece-8aa9-06ca916d1b85","packageManager":"dockerfile","priorityScoreList":[436,436,436],"projectPublicId":"783a3d5e-5cbd-444f-a3b9-4823d9957082","projectUrl":"https://app.snyk.io/org/szotkowski/project/783a3d5e-5cbd-444f-a3b9-4823d9957082?utm_source=github&utm_medium=referral&page=fix-pr","prType":"fix","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["updated-fix-title","priorityScore"],"type":"auto","upgrade":["SNYK-ALPINE322-OPENSSL-13174131","SNYK-ALPINE322-OPENSSL-13174131","SNYK-ALPINE322-OPENSSL-13174132","SNYK-ALPINE322-OPENSSL-13174132","SNYK-ALPINE322-OPENSSL-13174133"],"vulns":["SNYK-ALPINE322-OPENSSL-13174131","SNYK-ALPINE322-OPENSSL-13174132","SNYK-ALPINE322-OPENSSL-13174133"],"patch":[],"isBreakingChange":false,"remediationStrategy":"vuln"}'
---------
Signed-off-by: Michael Szotkowski <[email protected]>
Signed-off-by: dependabot[bot] <[email protected]>
Co-authored-by: snyk-bot <[email protected]>
Co-authored-by: dependabot[bot] <49699333+dependabot[bot]@users.noreply.github.com>1 parent 14b8a76 commit c264ecbCopy full SHA for c264ecb
File tree
Expand file treeCollapse file tree
1 file changed
+1
-1
lines changedOpen diff view settings
Filter options
Expand file treeCollapse file tree
1 file changed
+1
-1
lines changedOpen diff view settings
Collapse file
+1-1Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
2 | 2 | | |
3 | 3 | | |
4 | 4 | | |
5 | | - | |
| 5 | + | |
6 | 6 | | |
7 | 7 | | |
8 | 8 | | |
| |||
0 commit comments