Skip to content
This repository has been archived by the owner on Jul 31, 2024. It is now read-only.

[Snyk] Security upgrade python from 3.12.0rc2-slim-bullseye to 3.12-slim #95

Closed
wants to merge 1 commit into from

Conversation

Ismoh
Copy link
Member

@Ismoh Ismoh commented Oct 23, 2023

This PR was automatically created by Snyk using the credentials of a real user.


Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.

Changes included in this PR

  • Dockerfile

We recommend upgrading to python:3.12-slim, as this image has only 36 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Some of the most important vulnerabilities in your base image include:

Severity Priority Score / 1000 Issue Exploit Maturity
high severity 793 Out-of-bounds Write
SNYK-DEBIAN11-GLIBC-5927133
Proof of Concept
high severity 793 Out-of-bounds Write
SNYK-DEBIAN11-GLIBC-5927133
Proof of Concept
high severity 614 Out-of-bounds Write
SNYK-DEBIAN11-NCURSES-5421197
No Known Exploit
high severity 614 Out-of-bounds Write
SNYK-DEBIAN11-NCURSES-5421197
No Known Exploit
high severity 614 Out-of-bounds Write
SNYK-DEBIAN11-NCURSES-5421197
No Known Exploit

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.

Resolves #32

@Ismoh Ismoh self-assigned this Oct 23, 2023
@Ismoh Ismoh added dependencies Pull requests that update a dependency file security Pull requrests updating dependencies for security reasons labels Oct 23, 2023
@Ismoh
Copy link
Member Author

Ismoh commented Oct 23, 2023

Wrong version, see #96 !

@Ismoh Ismoh closed this Oct 23, 2023
@Ismoh Ismoh deleted the snyk-fix-5c962f40a54c02a1dd7c1d8a3fa93d02 branch October 23, 2023 15:19
Sign up for free to subscribe to this conversation on GitHub. Already have an account? Sign in.
Labels
dependencies Pull requests that update a dependency file security Pull requrests updating dependencies for security reasons
Projects
None yet
Development

Successfully merging this pull request may close these issues.

Dependabot pull requests
2 participants