Summary
Image: ghcr.io/github/gh-aw-firewall/cli-proxy:0.27.41@sha256:5338ee1b80ebf194436d9368deb376296c09a833ca4d80293dee249f94c7ff73
Grype and Grant scans found 3 High vulnerabilities, 6 Medium, and multiple license policy violations.
Vulnerabilities
High severity (3)
Medium severity (6)
License Violations
License policy violations for Alpine base packages (GPL-2.0) and BlueOak-1.0.0 JS packages (same pattern as api-proxy).
Remediation
- Update
golang.org/x/text to ≥0.39.0, google.golang.org/grpc to ≥1.82.1, brace-expansion to ≥5.0.8.
- Update Go stdlib to ≥1.26.5; update
tar to ≥7.5.21.
- Upgrade Alpine base image.
Generated by 🛡️ Daily Container Image Security Scan · sonnet46 · 161.6 AIC · ⌖ 6.65 AIC · ⊞ 4.5K · ◷
Summary
Image:
ghcr.io/github/gh-aw-firewall/cli-proxy:0.27.41@sha256:5338ee1b80ebf194436d9368deb376296c09a833ca4d80293dee249f94c7ff73Grype and Grant scans found 3 High vulnerabilities, 6 Medium, and multiple license policy violations.
Vulnerabilities
High severity (3)
Medium severity (6)
License Violations
License policy violations for Alpine base packages (GPL-2.0) and BlueOak-1.0.0 JS packages (same pattern as api-proxy).
Remediation
golang.org/x/textto ≥0.39.0,google.golang.org/grpcto ≥1.82.1,brace-expansionto ≥5.0.8.tarto ≥7.5.21.