-
Notifications
You must be signed in to change notification settings - Fork 2
Closed
Labels
securityIssues related to security.Issues related to security.
Description
In the main Dockerfile using alpine3.22, there are two packages that have had their vulnerabilities fixed:
NAME INSTALLED FIXED IN TYPE VULNERABILITY SEVERITY EPSS % RISK
libcrypto3 3.5.0-r0 3.5.1-r0 apk CVE-2025-4575 Medium 6.43 < 0.1
libssl3 3.5.0-r0 3.5.1-r0 apk CVE-2025-4575 Medium 6.43 < 0.1Adding a RUN apk upgrade && \ to the build stage of the Dockerfile updates these since the alpine image hasn't been updated yet.
Metadata
Metadata
Assignees
Labels
securityIssues related to security.Issues related to security.