kubecost / cluster-turndown

Automated turndown of Kubernetes clusters on specific schedules.
Apache License 2.0
259 stars 23 forks source link

Fix high CVE #78

Closed cliffcolvin closed 3 months ago

cliffcolvin commented 3 months ago

Resolves all of the following CVE: Base Image Scan CRITICAL: https://github.com/advisories/GHSA-cfmr-vrgj-vqwv

HIGH: https://github.com/advisories/GHSA-v5w6-wcm8-jm4q https://github.com/advisories/GHSA-r7jw-wp68-3xch https://github.com/advisories/GHSA-x4qr-2fvf-3mr5 https://github.com/advisories/GHSA-w2w6-xp88-5cvw https://github.com/advisories/GHSA-v5w6-wcm8-jm4q https://github.com/advisories/GHSA-r7jw-wp68-3xch https://github.com/advisories/GHSA-x4qr-2fvf-3mr5 https://github.com/advisories/GHSA-w2w6-xp88-5cvw

MEDIUM: https://github.com/advisories/GHSA-3wx7-46ch-7rq2 https://github.com/advisories/GHSA-p52g-cm5j-mjv4 https://github.com/advisories/GHSA-77f3-6546-6rj7 https://github.com/advisories/GHSA-gqxg-9vfr-p9cg https://github.com/advisories/GHSA-3p3x-vg38-6g9q https://github.com/advisories/GHSA-c945-cqj5-wfv6 https://github.com/advisories/GHSA-2cj7-mg3x-9mhq https://github.com/advisories/GHSA-3wx7-46ch-7rq2 https://github.com/advisories/GHSA-p52g-cm5j-mjv4 https://github.com/advisories/GHSA-77f3-6546-6rj7 https://github.com/advisories/GHSA-gqxg-9vfr-p9cg https://github.com/advisories/GHSA-3p3x-vg38-6g9q https://github.com/advisories/GHSA-c945-cqj5-wfv6 https://github.com/advisories/GHSA-2cj7-mg3x-9mhq

Go App Scan HIGH: https://github.com/advisories/GHSA-3vm4-22fp-5rfm https://github.com/advisories/GHSA-gwc9-m7rh-j2ww https://github.com/advisories/GHSA-8c26-wmh5-6g9v https://github.com/advisories/GHSA-83g2-8m93-v3w7 https://github.com/advisories/GHSA-69cg-p879-7622 https://github.com/advisories/GHSA-vvpx-j8f3-3w6h https://github.com/advisories/GHSA-4374-p667-p6c8 https://github.com/advisories/GHSA-ppp9-7jff-5vj2 https://github.com/advisories/GHSA-69ch-w2m2-3vjp https://github.com/advisories/GHSA-m425-mq94-257g

MEDIUM: https://github.com/advisories/GHSA-qppj-fm5r-hxr3 https://github.com/advisories/GHSA-8r3f-844c-mc37 https://github.com/advisories/GHSA-h86h-8ppg-mxmh https://github.com/advisories/GHSA-2wrh-6pvc-2jm9 https://github.com/advisories/GHSA-qppj-fm5r-hxr3 https://github.com/advisories/GHSA-p782-xgp4-8hr8 https://github.com/advisories/GHSA-45x7-px36-x8w8 https://github.com/advisories/GHSA-f5pg-7wfw-84q9 https://github.com/advisories/GHSA-6jvc-q2x7-pchv https://github.com/advisories/GHSA-76wf-9vgp-pj7w

LOW: https://github.com/advisories/GHSA-7f33-f4f5-xwgw

cliffcolvin commented 3 months ago

image trivy scan on test build