tuenti / secrets-manager

A daemon to sync Vault secrets to Kubernetes secrets
Apache License 2.0
171 stars 26 forks source link

Vulnerability remediation for current secret-manager image #83

Closed psheorangithub closed 2 years ago

psheorangithub commented 2 years ago

The current secret-manager have following vulnerabilities. Is there any plan to remediate them?

Severity: High:

CVE-2020-16845 CVE-2019-17596 CVE-2021-33196 CVE-2021-3115 CVE-2020-7919 CVE-2020-28367 CVE-2021-33198 CVE-2021-33194 CVE-2020-14040 CVE-2020-28366 CVE-2020-29652 CVE-2021-27918 CVE-2021-3121

Severity: Medium

CVE-2020-29511 CVE-2020-24553 CVE-2021-31525 CVE-2021-3114 CVE-2020-14039 CVE-2020-29509 CVE-2020-29510