datarhei / restreamer-ui

The user interface of the Restreamer for the connection to the Core application.
https://datarhei.com
Apache License 2.0
46 stars 38 forks source link

[Snyk] Security upgrade caddy from 2.7.5-alpine to alpine #56

Open jstabenow opened 3 months ago

jstabenow commented 3 months ago

This PR was automatically created by Snyk using the credentials of a real user.


Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image. #### Changes included in this PR - Dockerfile We recommend upgrading to `caddy:alpine`, as this image has only 3 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected. Some of the most important vulnerabilities in your base image include: | Severity | Priority Score / 1000 | Issue | Exploit Maturity | | :------: | :-------------------- | :---- | :--------------- | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png 'medium severity') | **586** | Out-of-bounds Write
[SNYK-ALPINE318-BUSYBOX-6913411](https://snyk.io/vuln/SNYK-ALPINE318-BUSYBOX-6913411) | No Known Exploit | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png 'medium severity') | **586** | Out-of-bounds Write
[SNYK-ALPINE318-BUSYBOX-6913411](https://snyk.io/vuln/SNYK-ALPINE318-BUSYBOX-6913411) | No Known Exploit | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png 'medium severity') | **586** | Out-of-bounds Write
[SNYK-ALPINE318-BUSYBOX-6913411](https://snyk.io/vuln/SNYK-ALPINE318-BUSYBOX-6913411) | No Known Exploit | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png 'medium severity') | **514** | Out-of-bounds Write
[SNYK-ALPINE318-OPENSSL-6152404](https://snyk.io/vuln/SNYK-ALPINE318-OPENSSL-6152404) | No Known Exploit | | ![medium severity](https://res.cloudinary.com/snyk/image/upload/w_20,h_20/v1561977819/icon/m.png 'medium severity') | **514** | CVE-2024-0727
[SNYK-ALPINE318-OPENSSL-6191692](https://snyk.io/vuln/SNYK-ALPINE318-OPENSSL-6191692) | No Known Exploit | --- **Note:** _You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs._ For more information: 🧐 [View latest project report](https://app.snyk.io/org/j.stabenow/project/540b666f-3c5d-4f1d-9f0a-a84dea88a86e?utm_source=github&utm_medium=referral&page=fix-pr) 🛠 [Adjust project settings](https://app.snyk.io/org/j.stabenow/project/540b666f-3c5d-4f1d-9f0a-a84dea88a86e?utm_source=github&utm_medium=referral&page=fix-pr/settings) [//]: # 'snyk:metadata:{"customTemplate":{"variablesUsed":[],"fieldsUsed":[]},"dependencies":[{"name":"caddy","from":"2.7.5-alpine","to":"alpine"}],"env":"prod","issuesToFix":[{"exploit_maturity":"No Known Exploit","id":"SNYK-ALPINE318-BUSYBOX-6913411","priority_score":586,"priority_score_factors":[{"type":"freshness","label":true,"score":71},{"type":"fixability","label":true,"score":214},{"type":"severity","label":"medium","score":300},{"type":"scoreVersion","label":"v1","score":1}],"severity":"medium","title":"Out-of-bounds Write"},{"exploit_maturity":"No Known Exploit","id":"SNYK-ALPINE318-BUSYBOX-6913411","priority_score":586,"priority_score_factors":[{"type":"freshness","label":true,"score":71},{"type":"fixability","label":true,"score":214},{"type":"severity","label":"medium","score":300},{"type":"scoreVersion","label":"v1","score":1}],"severity":"medium","title":"Out-of-bounds Write"},{"exploit_maturity":"No Known Exploit","id":"SNYK-ALPINE318-BUSYBOX-6913411","priority_score":586,"priority_score_factors":[{"type":"freshness","label":true,"score":71},{"type":"fixability","label":true,"score":214},{"type":"severity","label":"medium","score":300},{"type":"scoreVersion","label":"v1","score":1}],"severity":"medium","title":"Out-of-bounds Write"},{"exploit_maturity":"No Known Exploit","id":"SNYK-ALPINE318-OPENSSL-6152404","priority_score":514,"priority_score_factors":[{"type":"fixability","label":true,"score":214},{"type":"severity","label":"medium","score":300},{"type":"scoreVersion","label":"v1","score":1}],"severity":"medium","title":"Out-of-bounds Write"},{"exploit_maturity":"No Known Exploit","id":"SNYK-ALPINE318-OPENSSL-6191692","priority_score":514,"priority_score_factors":[{"type":"fixability","label":true,"score":214},{"type":"severity","label":"medium","score":300},{"type":"scoreVersion","label":"v1","score":1}],"severity":"medium","title":"CVE-2024-0727"}],"prId":"28f365e5-12b3-47d3-aedd-121af6979422","prPublicId":"28f365e5-12b3-47d3-aedd-121af6979422","packageManager":"dockerfile","priorityScoreList":[586,514,514],"projectPublicId":"540b666f-3c5d-4f1d-9f0a-a84dea88a86e","projectUrl":"https://app.snyk.io/org/j.stabenow/project/540b666f-3c5d-4f1d-9f0a-a84dea88a86e?utm_source=github&utm_medium=referral&page=fix-pr","prType":"fix","templateFieldSources":{"branchName":"default","commitMessage":"default","description":"default","title":"default"},"templateVariants":["updated-fix-title","priorityScore"],"type":"auto","upgrade":["SNYK-ALPINE318-BUSYBOX-6913411","SNYK-ALPINE318-BUSYBOX-6913411","SNYK-ALPINE318-BUSYBOX-6913411","SNYK-ALPINE318-OPENSSL-6152404","SNYK-ALPINE318-OPENSSL-6191692"],"vulns":["SNYK-ALPINE318-BUSYBOX-6913411","SNYK-ALPINE318-OPENSSL-6152404","SNYK-ALPINE318-OPENSSL-6191692"],"patch":[],"isBreakingChange":false,"remediationStrategy":"vuln"}' --- **Note:** _This is a default PR template raised by Snyk. Find out more about how you can customise Snyk PRs in our [documentation.](https://docs.snyk.io/scan-using-snyk/snyk-open-source/automatic-and-manual-prs-with-snyk-open-source/customize-pr-templates-closed-beta)_ **Learn how to fix vulnerabilities with free interactive lessons:** 🦉 [Learn about vulnerability in an interactive lesson of Snyk Learn.](https://learn.snyk.io/?loc=fix-pr)
cloudflare-pages[bot] commented 3 months ago

Deploying restreamer-ui with  Cloudflare Pages  Cloudflare Pages

Latest commit: 782cc5d
Status: ✅  Deploy successful!
Preview URL: https://a4026154.restreamer.pages.dev
Branch Preview URL: https://snyk-fix-03c8aa96d42261d4f73.restreamer.pages.dev

View logs