jimmidyson / configmap-reload

Simple binary to trigger a reload when a Kubernetes ConfigMap is updated
Apache License 2.0
983 stars 193 forks source link

Security Vulnerabilities #63

Closed kothabindu closed 2 years ago

kothabindu commented 2 years ago

We scan image for vulnerabilities with twistlock scan and found below vulnerabilities:

Packages: go Package Version :1.15.7 Fix Status: fixed in 1.16.7, 1.15.15 Risk Factors: Attack vector: network, Has fix, Medium severity, Recent vulnerability Attack complexity: low, Attack vector: network, Has fix, High severity, Recent vulnerability Attack complexity: low, Attack vector: network, Medium severity, Recent vulnerability Attack vector: network, DoS, Has fix, Medium severity, Recent vulnerability Attack complexity: low, Attack vector: network, Has fix, Medium severity, Recent vulnerability Attack complexity: low, Attack vector: network, Has fix, High severity, Recent vulnerability Attack complexity: low, Attack vector: network, DoS, High severity, Recent vulnerability Attack complexity: low, Attack vector: network, Has fix, High severity, Recent vulnerability Attack complexity: low, Attack vector: network, Has fix, High severity, Recent vulnerability Attack complexity: low, Attack vector: network, Has fix, High severity, Recent vulnerability

Can I know when you are planning to bring patched imaged or Can you work to fix these. I have also attached full twistlock scan report for more details of above vulnerabilities jimmidyson twistlock scan report.xlsx . Thanks and appreciated