flyway / flyway-docker

Official Flyway Docker images
Apache License 2.0
215 stars 82 forks source link

Critical Vulnerabilities #123

Closed ramonornela closed 1 year ago

ramonornela commented 1 year ago

There are some critical vulnerabilities in alpine v3.17 see:

https://nvd.nist.gov/vuln/detail/CVE-2022-3358 https://nvd.nist.gov/vuln/detail/CVE-2022-3602 https://nvd.nist.gov/vuln/detail/CVE-2022-3786 https://nvd.nist.gov/vuln/detail/CVE-2022-3996 https://nvd.nist.gov/vuln/detail/CVE-2023-0216 https://nvd.nist.gov/vuln/detail/CVE-2023-0217 https://nvd.nist.gov/vuln/detail/CVE-2023-0401

These vulnerabilities was fixes at alpine v3.18 and the base image was updated see eclipse-temurin:17-jre-alpine

Can someone please update here?

Thanks in advance 😉

ramonornela commented 1 year ago

New version flyway solved this 😉