Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: Update from ubi9/go-toolset:1.22.7-1733160835 to ubi9/go-toolset:9.5-1734626445 #1362

Open
wants to merge 5 commits into
base: main
Choose a base branch
from

chore: Update from ubi9-minimal:9.5-1731593028 to ubi9-minimal:9.5-17…

0337103
Select commit
Loading
Failed to load commit list.
Open

chore: Update from ubi9/go-toolset:1.22.7-1733160835 to ubi9/go-toolset:9.5-1734626445 #1362

chore: Update from ubi9-minimal:9.5-1731593028 to ubi9-minimal:9.5-17…
0337103
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / Scorecard succeeded Dec 28, 2024 in 5s

4 new alerts including 4 medium severity security vulnerabilities

New alerts in code changed by this pull request

Security Alerts:

  • 4 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 17 in build/Dockerfile

See this annotation in the file changed.

Code scanning / Scorecard

Pinned-Dependencies Medium

score is 2: containerImage not pinned by hash
Remediation tip: pin your Docker image by updating registry.access.redhat.com/ubi9/go-toolset:9.5-1734626445 to registry.access.redhat.com/ubi9/go-toolset:9.5-1734626445@sha256:ead35188c5748efe2b9420352aba56b02b43d8fcd7e879cc96c6b9ac2548e454
Click Remediation section below for further remediation help

Check warning on line 37 in build/Dockerfile

See this annotation in the file changed.

Code scanning / Scorecard

Pinned-Dependencies Medium

score is 2: containerImage not pinned by hash
Remediation tip: pin your Docker image by updating registry.access.redhat.com/ubi9-minimal to registry.access.redhat.com/ubi9-minimal@sha256:daa61d6103e98bccf40d7a69a0d4f8786ec390e2204fd94f7cc49053e9949360
Click Remediation section below for further remediation help

Check warning on line 18 in project-clone/Dockerfile

See this annotation in the file changed.

Code scanning / Scorecard

Pinned-Dependencies Medium

score is 2: containerImage not pinned by hash
Remediation tip: pin your Docker image by updating registry.access.redhat.com/ubi9/go-toolset:9.5-1734626445 to registry.access.redhat.com/ubi9/go-toolset:9.5-1734626445@sha256:ead35188c5748efe2b9420352aba56b02b43d8fcd7e879cc96c6b9ac2548e454
Click Remediation section below for further remediation help

Check warning on line 40 in project-clone/Dockerfile

See this annotation in the file changed.

Code scanning / Scorecard

Pinned-Dependencies Medium

score is 2: containerImage not pinned by hash
Remediation tip: pin your Docker image by updating registry.access.redhat.com/ubi9-minimal to registry.access.redhat.com/ubi9-minimal@sha256:daa61d6103e98bccf40d7a69a0d4f8786ec390e2204fd94f7cc49053e9949360
Click Remediation section below for further remediation help