Website Migration Notice: SafePoint is now operated by CyberServal.Learn more →
Discussion

[Bug] Postgress image vulnerable

Discussion Closed

Published a month ago

# Github Issue
# enhancement
# in progress

Published a month ago

profile_photo

lordraiden

Updated a month ago

0

What happened?

Docker compose example should be updated to avoid this or just a different tag

Image

How we reproduce?

Scan with trivy

Expected behavior

Change the tag in the docker compose example

profile_photo

StayerYao

Updated a month ago

0

Thank you for the feedback; we will evaluate the work involved in upgrading PostgreSQL.

profile_photo

StayerYao

Updated a month ago

0

Thanks for reporting this. We have upgraded the PostgreSQL image from 15.2 to 15.18. Please update SafeLine and run the Trivy scan again. If you still find any vulnerabilities, please share the latest scan results with us.

You can upgrade the database by running: bash -c "$(curl -fsSLk https://waf.chaitin.com/release/latest/manager.sh)" -- --en

profile_photo

lordraiden

Updated a month ago

0

Image Most of them are gone but at least there is no new version of postgres 15.x to fix it.

The other containers also have some, at lease ensure that you are using the latest stable version of each container, like nginx