File tree Expand file tree Collapse file tree 3 files changed +4
-3
lines changed
Expand file tree Collapse file tree 3 files changed +4
-3
lines changed Original file line number Diff line number Diff line change 1313 name : Container Scan
1414 permissions :
1515 contents : read
16- uses : ministryofjustice/analytical-platform-github-actions/.github/workflows/reusable-container-scan.yml@2ab174150aeb0a6003afd1c0b4316698720b3b6b # v5.5 .0
16+ uses : ministryofjustice/analytical-platform-github-actions/.github/workflows/reusable-container-scan.yml@9e604949e842733e0990f5eb6627844e8715deeb # v6.4 .0
Original file line number Diff line number Diff line change @@ -8,3 +8,4 @@ CVE-2025-49794 exp:2026-03-17
88CVE-2025-49796 exp:2026-03-17
99CVE-2025-49795 exp:2026-03-17
1010CVE-2025-6021 exp:2026-03-17
11+ CVE-2026-25646 exp:2026-03-20
Original file line number Diff line number Diff line change 11# checkov:skip=CKV_DOCKER_3: Current implementation uses off-the-shelf image from OpenResty which doesn't offer a nonroot variant
22
3- # docker.io/openresty/openresty:1.27.1.2-1 -alpine-fat
4- FROM docker.io/openresty/openresty:1.27.1.2-1 -alpine-fat@sha256:a82c4d8bceb80cffd0bb427959f959c8a733bcbeedcfd3d3a7d82268c4518339
3+ # docker.io/openresty/openresty:1.27.1.2-11 -alpine-fat
4+ FROM docker.io/openresty/openresty:1.27.1.2-11 -alpine-fat@sha256:4486eb7c26b6e94c7fe144b9293319e855ecaed378b24cb56062d2af2cf81513
55
66LABEL org.opencontainers.image.vendor="Ministry of Justice" \
77 org.opencontainers.image.authors="Analytical Platform (analytical-platform@digital.justice.gov.uk)" \
You can’t perform that action at this time.
0 commit comments