argoproj / argo-cd

Declarative Continuous Deployment for Kubernetes
https://argo-cd.readthedocs.io
Apache License 2.0
17.84k stars 5.44k forks source link

Update libsqlite in container #12553

Open ahosni-axon opened 1 year ago

ahosni-axon commented 1 year ago

Summary

Updating libsqlite3-0

Motivation

Container image is currently failing Twistlock security scans.

Proposal

By upgrading the package.

Sorry if this isn't the right place, was looking at this statement "If there is a CVE assigned to the issue, please do open an issue on our GitHub tracker instead of writing to the security contact e-mail, since things reported by scanners are public already and the discussion that might emerge is of benefit to the general community." and wasn't sure the best place to open this.

crenshaw-dev commented 9 months ago

@ahosni-axon can you confirm whether this is still a problem on the latest patch of one of the currently-supported versions (2.10, 2.9, 2.8, 2.7)?