Releases: PrPlanIT/static-site
Release list
latest-dev
📦 static-site — v0.0.2-dev+89dc0b5
Release type: prerelease • Commit:
89dc0b5
Security: 🛡️
Image Availability
| Registry | Image | Tags |
|---|---|---|
| Docker Hub | docker.io/prplanit/static-site |
dev-89dc0b5 latest-dev |
| cr.pcfae.com | cr.pcfae.com/prplanit/static-site |
dev-89dc0b5 latest-dev |
| GitHub Container Registry | ghcr.io/prplanit/static-site |
dev-89dc0b5 latest-dev |
Digest pull commands & supply chain artifacts
docker.io/prplanit/static-site
docker pull docker.io/prplanit/static-site@sha256:c0acb9f89b5ffc6a62517c90610169e737296128c7a8373009d5abca3530aae9
cr.pcfae.com/prplanit/static-site
docker pull cr.pcfae.com/prplanit/static-site@sha256:c0acb9f89b5ffc6a62517c90610169e737296128c7a8373009d5abca3530aae9
ghcr.io/prplanit/static-site
docker pull ghcr.io/prplanit/static-site@sha256:c0acb9f89b5ffc6a62517c90610169e737296128c7a8373009d5abca3530aae9
Notable Changes
Documentation
- refresh generated docs and badges (stagefreight)
Maintenance
- ci: regenerate .gitlab-ci.yml for the anchored narrate-skip rule (SoFMeRight)
- deps: update managed dependencies (stagefreight)
Security
🛡️
Vulnerability details (2 high, 3 medium)
| Severity | CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|---|
| High | CVE-2026-14456 | libcrypto3 | 3.5.7-r0 | — | Issue summary: When an OpenSSL QUIC server (Listener SSL ... |
| High | CVE-2026-14456 | libssl3 | 3.5.7-r0 | — | Issue summary: When an OpenSSL QUIC server (Listener SSL ... |
| Medium | CVE-2025-60876 | busybox | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | busybox-binsh | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | ssl_client | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
Full changelog
- [
89dc0b5] regenerate .gitlab-ci.yml for the anchored narrate-skip rule (SoFMeRight) - [
85b5bc6] refresh generated docs and badges (stagefreight) - [
1be2221] update managed dependencies (stagefreight)
dev-89dc0b5
📦 static-site — v0.0.2-dev+89dc0b5
Release type: prerelease • Commit:
89dc0b5
Security: 🛡️
Image Availability
| Registry | Image | Tags |
|---|---|---|
| Docker Hub | docker.io/prplanit/static-site |
dev-89dc0b5 latest-dev |
| cr.pcfae.com | cr.pcfae.com/prplanit/static-site |
dev-89dc0b5 latest-dev |
| GitHub Container Registry | ghcr.io/prplanit/static-site |
dev-89dc0b5 latest-dev |
Digest pull commands & supply chain artifacts
docker.io/prplanit/static-site
docker pull docker.io/prplanit/static-site@sha256:c0acb9f89b5ffc6a62517c90610169e737296128c7a8373009d5abca3530aae9
cr.pcfae.com/prplanit/static-site
docker pull cr.pcfae.com/prplanit/static-site@sha256:c0acb9f89b5ffc6a62517c90610169e737296128c7a8373009d5abca3530aae9
ghcr.io/prplanit/static-site
docker pull ghcr.io/prplanit/static-site@sha256:c0acb9f89b5ffc6a62517c90610169e737296128c7a8373009d5abca3530aae9
Notable Changes
Documentation
- refresh generated docs and badges (stagefreight)
Maintenance
- ci: regenerate .gitlab-ci.yml for the anchored narrate-skip rule (SoFMeRight)
- deps: update managed dependencies (stagefreight)
Security
🛡️
Vulnerability details (2 high, 3 medium)
| Severity | CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|---|
| High | CVE-2026-14456 | libcrypto3 | 3.5.7-r0 | — | Issue summary: When an OpenSSL QUIC server (Listener SSL ... |
| High | CVE-2026-14456 | libssl3 | 3.5.7-r0 | — | Issue summary: When an OpenSSL QUIC server (Listener SSL ... |
| Medium | CVE-2025-60876 | busybox | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | busybox-binsh | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | ssl_client | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
Full changelog
- [
89dc0b5] regenerate .gitlab-ci.yml for the anchored narrate-skip rule (SoFMeRight) - [
85b5bc6] refresh generated docs and badges (stagefreight) - [
1be2221] update managed dependencies (stagefreight)
Container Images
v0.0.2
📦 static-site — v0.0.2
Release type: latest • Commit:
14865b2
Security: 🛡️ ✅ Passed — 3 vulnerabilities (3 medium, 0 low)
Image Availability
| Registry | Image | Tags |
|---|---|---|
| Docker Hub | docker.io/prplanit/static-site |
v0.0.2 latest |
| cr.pcfae.com | cr.pcfae.com/prplanit/static-site |
v0.0.2 latest |
| GitHub Container Registry | ghcr.io/prplanit/static-site |
v0.0.2 latest |
Digest pull commands & supply chain artifacts
docker.io/prplanit/static-site
docker pull docker.io/prplanit/static-site@sha256:b1acd873f0b2fd08b6823a2ddbc9c1e2ef542afb6995c24e667425d446060279
cr.pcfae.com/prplanit/static-site
docker pull cr.pcfae.com/prplanit/static-site@sha256:b1acd873f0b2fd08b6823a2ddbc9c1e2ef542afb6995c24e667425d446060279
ghcr.io/prplanit/static-site
docker pull ghcr.io/prplanit/static-site@sha256:b1acd873f0b2fd08b6823a2ddbc9c1e2ef542afb6995c24e667425d446060279
Highlights
- static-site v0.0.2 — digest-pinned Alpine base, unpinned apk, contents badge fixed
Notable Changes
Bug Fixes
- pin Alpine base by tag+digest, unpin apk (SoFMeRight)
Documentation
- refresh generated docs and badges (stagefreight) ×2
Security
🛡️ ✅ Passed — 3 vulnerabilities (3 medium, 0 low)
Vulnerability details (3 medium)
| Severity | CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|---|
| Medium | CVE-2025-60876 | busybox | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | busybox-binsh | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | ssl_client | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
Full changelog
- [
14865b2] refresh generated docs and badges (stagefreight) - [
0b740b0] refresh generated docs and badges (stagefreight) - [
6530917] pin Alpine base by tag+digest, unpin apk (SoFMeRight)
v0.0.1
📦 static-site — v0.0.1
Release type: latest • Commit:
72a0ce2
Security: 🛡️ ✅ Passed — 3 vulnerabilities (3 medium, 0 low)
Image Availability
| Registry | Image | Tags |
|---|---|---|
| Docker Hub | docker.io/prplanit/static-site |
v0.0.1 latest |
| cr.pcfae.com | cr.pcfae.com/prplanit/static-site |
v0.0.1 latest |
| GitHub Container Registry | ghcr.io/prplanit/static-site |
v0.0.1 latest |
Digest pull commands & supply chain artifacts
docker.io/prplanit/static-site
docker pull docker.io/prplanit/static-site@sha256:e167013b4dbd298b224928f7976412812b4dbdf32a06cafd26951337314b2273
cr.pcfae.com/prplanit/static-site
docker pull cr.pcfae.com/prplanit/static-site@sha256:e167013b4dbd298b224928f7976412812b4dbdf32a06cafd26951337314b2273
ghcr.io/prplanit/static-site
docker pull ghcr.io/prplanit/static-site@sha256:e167013b4dbd298b224928f7976412812b4dbdf32a06cafd26951337314b2273
Highlights
- static-site v0.0.1 — first release
Notable Changes
Features
- hardened non-root nginx (brotli) static-site base image (SoFMeRight)
Bug Fixes
- docker.io consumer FROM + restore full flagship badge/scribe set (SoFMeRight)
Documentation
- refresh generated docs and badges (stagefreight) ×3
Maintenance
- move nginx config + entrypoint into nginx/ (SoFMeRight)
Security
🛡️ ✅ Passed — 3 vulnerabilities (3 medium, 0 low)
Vulnerability details (3 medium)
| Severity | CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|---|
| Medium | CVE-2025-60876 | busybox | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | busybox-binsh | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | ssl_client | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
Full changelog
- [
72a0ce2] refresh generated docs and badges (stagefreight) - [
e858b96] docker.io consumer FROM + restore full flagship badge/scribe set (SoFMeRight) - [
04f087f] refresh generated docs and badges (stagefreight) - [
fd689fd] move nginx config + entrypoint into nginx/ (SoFMeRight) - [
e7d56c9] refresh generated docs and badges (stagefreight) - [
585756f] hardened non-root nginx (brotli) static-site base image (SoFMeRight)
dev-6530917
📦 static-site — v0.0.1-dev+6530917
Release type: prerelease • Commit:
6530917
Security: 🛡️ ✅ Passed — 3 vulnerabilities (3 medium, 0 low)
Image Availability
| Registry | Image | Tags |
|---|---|---|
| Docker Hub | docker.io/prplanit/static-site |
dev-6530917 latest-dev |
| cr.pcfae.com | cr.pcfae.com/prplanit/static-site |
dev-6530917 latest-dev |
| GitHub Container Registry | ghcr.io/prplanit/static-site |
dev-6530917 latest-dev |
Digest pull commands & supply chain artifacts
docker.io/prplanit/static-site
docker pull docker.io/prplanit/static-site@sha256:b1acd873f0b2fd08b6823a2ddbc9c1e2ef542afb6995c24e667425d446060279
cr.pcfae.com/prplanit/static-site
docker pull cr.pcfae.com/prplanit/static-site@sha256:b1acd873f0b2fd08b6823a2ddbc9c1e2ef542afb6995c24e667425d446060279
ghcr.io/prplanit/static-site
docker pull ghcr.io/prplanit/static-site@sha256:b1acd873f0b2fd08b6823a2ddbc9c1e2ef542afb6995c24e667425d446060279
Notable Changes
Bug Fixes
- pin Alpine base by tag+digest, unpin apk (SoFMeRight)
Security
🛡️ ✅ Passed — 3 vulnerabilities (3 medium, 0 low)
Vulnerability details (3 medium)
| Severity | CVE | Package | Installed | Fixed | Description |
|---|---|---|---|---|---|
| Medium | CVE-2025-60876 | busybox | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | busybox-binsh | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
| Medium | CVE-2025-60876 | ssl_client | 1.37.0-r30 | — | BusyBox wget thru 1.3.7 accepted raw CR (0x0D)/LF (0x0A) ... |
Full changelog
- [
6530917] pin Alpine base by tag+digest, unpin apk (SoFMeRight)