craftcms / docker

Craft CMS Docker images.
104 stars 38 forks source link

High vulnerability reported in `tar-1.34-r0` #73

Closed pixleight closed 1 year ago

pixleight commented 1 year ago

Description

Friendly neighborhood dev here with a new sysdig scan vulnerability 😀

Our scan is reporting a high vulnerability in tar-1.34-r0

   Vulnerability    Severity Package                                  Type     Fix version      URL
 - CVE-2022-48303   High     tar-1.34-r0                              APKG     1.34-r1          https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2022-48303

@timkelty any chance you can rebuild the docker images to get the latest security fixes?

timkelty commented 1 year ago

https://github.com/craftcms/docker/actions/runs/4235425762