pact-foundation / pact_broker-client

A Ruby and CLI client for the Pact Broker. Publish and retrieve pacts and verification results.
MIT License
69 stars 47 forks source link

Security Vulnerabilities with the latest docker image #125

Closed Yogesh-BK closed 1 year ago

Yogesh-BK commented 1 year ago

While scanning with latest docker image for vulnerabilities with the below command, trivy image pactfoundation/pact-cli:latest Many vulnerabilities(including high and Critical) are there as below

image image

Expected behaviour A image which has no vulnerabilities

github-actions[bot] commented 1 year ago

👋 Thanks, this ticket has been added to the PactFlow team's backlog as PACT-699

bethesque commented 1 year ago

New image is out with upgraded base image.