From b9a437838b8c91890228c01ee34289c443f677ba Mon Sep 17 00:00:00 2001 From: Jahir <124062934+juddin927@users.noreply.github.com> Date: Wed, 16 Oct 2024 15:02:16 +0100 Subject: [PATCH] added APK upgrade to NGINX base image to address critical CVEs (#381) --- nginx/Dockerfile | 9 ++++++++- 1 file changed, 8 insertions(+), 1 deletion(-) diff --git a/nginx/Dockerfile b/nginx/Dockerfile index 9ee0bad..483b3d6 100644 --- a/nginx/Dockerfile +++ b/nginx/Dockerfile @@ -1 +1,8 @@ -FROM nginx:1.25.4-alpine +FROM nginx:1.27.2-alpine + +# Upgrade the OS and update all packages, including NGINX dependencies +RUN apk update && \ + apk upgrade --no-cache && \ + apk add --no-cache bash + +CMD ["nginx", "-g", "daemon off;"]