Azure-Samples / kubernetes-offer-samples

Samples for creating an Azure Marketplace Kubernetes offer
MIT License
19 stars 30 forks source link

Switch azure vote to alpine, use latest flask #24

Closed thomasyip-msft closed 1 year ago

thomasyip-msft commented 1 year ago

Purpose

Switch azure vote base OS to alpine to reduce exposure to vulnerable packages. switch flask to latest version as it works with azure vote with no high vulnerabilities. Flask 2.0.x was flagged for https://scout.docker.com/vulnerabilities/id/CVE-2023-30861 and it is fixed in 2.3.2

Does this introduce a breaking change?

[ ] Yes
[X ] No

Pull Request Type

What kind of change does this Pull Request introduce?

[ ] Bugfix
[ ] Feature
[ ] Code style update (formatting, local variables)
[ ] Refactoring (no functional changes, no api changes)
[ ] Documentation content changes
[ ] Other... Please describe:

How to Test

git clone [repo-address]
cd [repo-name]
git checkout [branch-name]
npm install

What to Check

Verify that the following are valid

Other Information