We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
The current golang build is based on 1.21.0, and some CVE would be discovered if the binary is built from this version.
$ docker scout cves --format only-packages --only-vuln-packages edgexfoundry/core-metadata:0.0.0-dev ✓ Image stored for indexing ✓ Indexed 75 packages ✗ Detected 2 vulnerable packages with a total of 14 vulnerabilities Name Version Type Vulnerabilities ──────────────────────────────────────────────────────────────────────────── golang.org/x/net 0.21.0 golang 0C 0H 1M 0L stdlib 1.21.0 golang 0C 4H 4M 0L 6?
Thus, we should upgrade to use the latest patch version
The text was updated successfully, but these errors were encountered:
No branches or pull requests
The current golang build is based on 1.21.0, and some CVE would be discovered if the binary is built from this version.
Thus, we should upgrade to use the latest patch version
The text was updated successfully, but these errors were encountered: