alexei-led / pumba

Chaos testing, network emulation, and stress testing tool for containers
Apache License 2.0
2.75k stars 193 forks source link

GHSA-77vh-xpmg-72qh: Clarify `mediaType` handling #225

Closed KevinPoole closed 1 year ago

KevinPoole commented 1 year ago

Anchore and Twistlock both identify Pumba as being vulnerable to Github Security Advisory https://github.com/advisories/GHSA-77vh-xpmg-72qh.

Fix is described as upgrading github.com/opencontainers/image-spec to at least 1.0.2.

-Kevin

alexei-led commented 1 year ago

fixed