Skip to content

Conversation

@weitzman
Copy link

@weitzman weitzman commented Oct 1, 2024

No description provided.

Copy link

@prisma-cloud-devsecops prisma-cloud-devsecops bot left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Prisma Cloud has found errors in this PR ⬇️

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

apr 1.7.2-3 / Dockerfile.FROM

Total vulnerabilities: 1

Critical: 0 High: 0 Medium: 0 Low: 1
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2023-49582 LOW LOW - - Open

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

libgcrypt20 1.10.1-3 / Dockerfile.FROM

Total vulnerabilities: 1

Critical: 0 High: 0 Medium: 0 Low: 1
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2024-2236 LOW LOW - - Open

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

krb5 1.20.1-2+deb12u2 / Dockerfile.FROM

Total vulnerabilities: 3

Critical: 0 High: 0 Medium: 0 Low: 3
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2024-26458 LOW LOW - - Open
CVE-2024-26461 LOW LOW - - Open
CVE-2024-26462 LOW LOW - - Open

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

nghttp2 1.52.0-1+deb12u1 / Dockerfile.FROM

Total vulnerabilities: 1

Critical: 0 High: 0 Medium: 0 Low: 1
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2024-28182 LOW LOW - - Open

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

curl 7.88.1-10+deb12u7 / Dockerfile.FROM

Total vulnerabilities: 1

Critical: 0 High: 0 Medium: 0 Low: 1
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2024-8096 LOW LOW - - Open

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

ncurses 6.4-4 / Dockerfile.FROM

Total vulnerabilities: 2

Critical: 0 High: 0 Medium: 0 Low: 2
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2023-45918 LOW LOW - - Open
CVE-2023-50495 LOW LOW 6.5 - Open

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

sqlite3 3.40.1-2 / Dockerfile.FROM

Total vulnerabilities: 2

Critical: 0 High: 0 Medium: 0 Low: 2
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2024-0232 LOW LOW 5.5 - Open
CVE-2023-7104 LOW LOW 7.3 - Open

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

openldap 2.5.13+dfsg-5 / Dockerfile.FROM

Total vulnerabilities: 1

Critical: 0 High: 0 Medium: 0 Low: 1
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2023-2953 LOW LOW 7.5 - Open

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

libxml2 2.9.14+dfsg-1.3~deb12u1 / Dockerfile.FROM

Total vulnerabilities: 1

Critical: 0 High: 0 Medium: 0 Low: 1
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2024-25062 LOW LOW 7.5 - Open

@@ -1,5 +1,5 @@

FROM php:8.2-apache
FROM php:8.3-apache

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

perl 5.36.0-7+deb12u1 / Dockerfile.FROM

Total vulnerabilities: 1

Critical: 0 High: 0 Medium: 0 Low: 1
Vulnerability IDSeverityCVSSFixed inStatus
CVE-2023-31484 LOW LOW 8.1 - Open

@weitzman weitzman merged commit ff5802c into master Oct 1, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants