Skip to content

Upgrade nginx from 1.25-alpine to 1.27.4-alpine#6

Merged
TangInasal merged 1 commit intomasterfrom
snyk-fix-51991ad59a04932a2d3a0b0695f1638d
Mar 6, 2025
Merged

Upgrade nginx from 1.25-alpine to 1.27.4-alpine#6
TangInasal merged 1 commit intomasterfrom
snyk-fix-51991ad59a04932a2d3a0b0695f1638d

Conversation

@TangInasal
Copy link
Copy Markdown
Owner

@TangInasal TangInasal commented Mar 6, 2025

(https://redirect.github.com/andygongea/OWASP-Benchmark/assets/818805/c518c423-16fe-447e-b67f-ad5a49b5d123)

  • mythic-react-docker/Dockerfile

upgrade to nginx:1.27.4-alpine nigga. To do this, merge this pull request, then verify your application still works as expected.

Vulnerabilities that will be fixed with an upgrade:

Issue Score
critical severity Integer Overflow or Wraparound
SNYK-ALPINE319-EXPAT-7908400
  714  
critical severity Integer Overflow or Wraparound
SNYK-ALPINE319-EXPAT-7908409
  714  
high severity CVE-2024-6197
SNYK-ALPINE319-CURL-7567383
  614  
high severity CVE-2024-6197
SNYK-ALPINE319-CURL-7567383
  614  
high severity XML External Entity (XXE) Injection
SNYK-ALPINE319-EXPAT-7908399
  614  

@TangInasal TangInasal changed the title [Snyk] Security upgrade nginx from 1.25-alpine to 1.27.4-alpine Upgrade nginx from 1.25-alpine to 1.27.4-alpine Mar 6, 2025
@TangInasal TangInasal merged commit 8b03b55 into master Mar 6, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants