Nullify-Platform / cli

Nullify CLI Tool
https://github.com/Nullify-Platform
MIT License
2 stars 2 forks source link

[Nullify Dependencies] updating vulnerable package github.com/docker/docker from 25.0.4+incompatible to 25.0.5 #68

Closed nullify-latest[bot] closed 4 months ago

nullify-latest[bot] commented 5 months ago

Package Vulnerability Fix Summary

Severity Threshold: 🔵 MEDIUM

🔴 CRITICAL 🟡 HIGH 🔵 MEDIUM ⚪ LOW
0 0 1 0

ID: 01HWP6JV9J98JFZCE98G953CJ3 Package: github.com/docker/docker Version: 25.0.4+incompatible Vulnerabilities: 1 Type: Direct

CVE Severity Issue Current Version Introduced in Fixed in Priority
CVE-2024-29018 MEDIUM Moby's external DNS requests from 'internal' networks could lead to data exfiltration 25.0.4+incompatible Initial Release 25.0.5 Negligible