timescale / timescaledb-docker-ha

Create Docker images containing TimescaleDB, Patroni to be used by developers and Kubernetes.
Apache License 2.0
155 stars 44 forks source link

Critical Vulnerabilities in timescale libraries #474

Open udesaiitrs opened 3 months ago

udesaiitrs commented 3 months ago

Critical CVEs Found in Timescaledb-HA docker imaage

Description

We have identified several critical Common Vulnerabilities and Exposures (CVEs) in [Component Name] used in our project. These vulnerabilities pose significant security risks and need to be addressed urgently.

Affected Components

See the attached pdf with the full list of scan output. Tool used was grype.

We request immediate attention to this issue due to the critical nature of these vulnerabilities.

pg14.12-ts2.15.2.pdf