GithubHelp home page GithubHelp logo

Comments (3)

github-actions avatar github-actions commented on June 12, 2024

Internal ticket created : CY-5947

from codacy-coverage-reporter.

isuftin avatar isuftin commented on June 12, 2024

FYI 13.9.0 image is also not great:

grype codacy/codacy-coverage-reporter:13.9.0
 ✔ Vulnerability DB        [no update available]
 ✔ Parsed image
 ✔ Cataloged packages      [14 packages]
 ✔ Scanned image           [57 vulnerabilities]

NAME          INSTALLED   FIXED-IN    VULNERABILITY   SEVERITY
apk-tools     2.10.5-r1   2.10.6-r0   CVE-2021-30139  High
apk-tools     2.10.5-r1   2.10.7-r0   CVE-2021-36159  Critical
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42386  High
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42379  High
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42381  High
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42382  High
busybox       1.31.1-r19  1.31.1-r20  CVE-2021-28831  High
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42384  High
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42374  Medium
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42385  High
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42380  High
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42378  High
busybox       1.31.1-r19  1.31.1-r21  CVE-2021-42383  High
libcrypto1.1  1.1.1i-r0   1.1.1j-r0   CVE-2021-23840  High
libcrypto1.1  1.1.1i-r0   1.1.1j-r0   CVE-2021-23841  Medium
libcrypto1.1  1.1.1i-r0               CVE-2021-4160   Medium
libcrypto1.1  1.1.1i-r0   1.1.1j-r0   CVE-2021-23839  Low
libcrypto1.1  1.1.1i-r0   1.1.1l-r0   CVE-2021-3712   High
libcrypto1.1  1.1.1i-r0   1.1.1n-r0   CVE-2022-0778   High
libcrypto1.1  1.1.1i-r0   1.1.1k-r0   CVE-2021-3450   High
libcrypto1.1  1.1.1i-r0   1.1.1l-r0   CVE-2021-3711   Critical
libcrypto1.1  1.1.1i-r0   1.1.1k-r0   CVE-2021-3449   Medium
libssl1.1     1.1.1i-r0   1.1.1j-r0   CVE-2021-23841  Medium
libssl1.1     1.1.1i-r0   1.1.1l-r0   CVE-2021-3712   High
libssl1.1     1.1.1i-r0   1.1.1j-r0   CVE-2021-23839  Low
libssl1.1     1.1.1i-r0   1.1.1j-r0   CVE-2021-23840  High
libssl1.1     1.1.1i-r0               CVE-2021-4160   Medium
libssl1.1     1.1.1i-r0   1.1.1k-r0   CVE-2021-3449   Medium
libssl1.1     1.1.1i-r0   1.1.1l-r0   CVE-2021-3711   Critical
libssl1.1     1.1.1i-r0   1.1.1k-r0   CVE-2021-3450   High
libssl1.1     1.1.1i-r0   1.1.1n-r0   CVE-2022-0778   High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42380  High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42383  High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42385  High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42379  High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42386  High
ssl_client    1.31.1-r19  1.31.1-r20  CVE-2021-28831  High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42378  High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42381  High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42382  High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42384  High
ssl_client    1.31.1-r19  1.31.1-r21  CVE-2021-42374  Medium
zlib          1.2.11-r3   1.2.12-r0   CVE-2018-25032  Unknown

from codacy-coverage-reporter.

lucassklp avatar lucassklp commented on June 12, 2024

This update fix these vulnerabilites #374

$ grype codacy/codacy-coverage-reporter:13.9.1
 ✔ Vulnerability DB        [no update available]
 ✔ Pulled image            
 ✔ Loaded image            
 ✔ Parsed image            
 ✔ Cataloged packages      [14 packages]
 ✔ Scanned image           [0 vulnerabilities]

No vulnerabilities found

from codacy-coverage-reporter.

Related Issues (20)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.