Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Facing compliance issues while using the image. #1430

Open
serenagomez1304 opened this issue Oct 19, 2023 · 6 comments
Open

Facing compliance issues while using the image. #1430

serenagomez1304 opened this issue Oct 19, 2023 · 6 comments

Comments

@serenagomez1304
Copy link

serenagomez1304 commented Oct 19, 2023

Project board link

While using the image: thelastpickle/cassandra-reaper:3.3.4, we run into a few security scan failures related to java libraries.
Would we be able to fix these?

@serenagomez1304
Copy link
Author

Would it be possible for a contributor to share their email id so I can give further information regarding the security scan report?

@adejanovski
Copy link
Contributor

Hi @serenagomez1304, do you think it's unsafe to post the scan results here?

@serenagomez1304
Copy link
Author

Hi @adejanovski, yes I think it isn't safe to post the results here. I was advised not to by the SecOps team at my company.

@coltonfreeman26
Copy link

if these are public CVE' could you post here? we are using 3.4.0 and have multiple findings from our scan tools in regards to the cassandra-reaper.jar

@serenagomez1304
Copy link
Author

I wouldn't be able to post them here.

@adejanovski
Copy link
Contributor

Hi @serenagomez1304, you can join us on the ASF Slack or the K8ssandra Discord. There we can DM about those security scans results.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants