-
Notifications
You must be signed in to change notification settings - Fork 116
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
chore: security upgrade node from 18.20.3-alpine3.18 to 18.20.6-alpine3.21 #4056
Conversation
Allure Test reports for this run are available at: |
Codecov ReportAll modified and coverable lines are covered by tests ✅
Additional details and impacted files@@ Coverage Diff @@
## develop #4056 +/- ##
===========================================
+ Coverage 91.00% 91.04% +0.04%
===========================================
Files 629 629
Lines 32824 32827 +3
Branches 7788 7788
===========================================
+ Hits 29871 29887 +16
+ Misses 2734 2721 -13
Partials 219 219 ☔ View full report in Codecov by Sentry. |
The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-UPSTREAM-NODE-8651420 - https://snyk.io/vuln/SNYK-UPSTREAM-NODE-8670156 - https://snyk.io/vuln/SNYK-ALPINE318-BUSYBOX-6913411 - https://snyk.io/vuln/SNYK-ALPINE318-BUSYBOX-7249236 - https://snyk.io/vuln/SNYK-ALPINE318-BUSYBOX-7249265
b7a7f41
to
555bf6c
Compare
Allure Test reports for this run are available at: |
Allure Test reports for this run are available at: |
Allure Test reports for this run are available at: |
|
Snyk has created this PR to fix 5 vulnerabilities in the dockerfile dependencies of this project.
Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.
Snyk changed the following file(s):
Dockerfile
We recommend upgrading to
node:18.20.6-alpine3.21
, as this image has only 4 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.Resolves INT-3248
Vulnerabilities that will be fixed with an upgrade:
SNYK-UPSTREAM-NODE-8651420
SNYK-UPSTREAM-NODE-8670156
SNYK-ALPINE318-BUSYBOX-6913411
SNYK-ALPINE318-BUSYBOX-7249236
SNYK-ALPINE318-BUSYBOX-7249265
Important
Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.
For more information:![](https://camo.githubusercontent.com/e13f39e65aa2692352601f172584ea661e555674baf8fe15f1891fc6b4c7c0c3/68747470733a2f2f6170692e7365676d656e742e696f2f76312f706978656c2f747261636b3f646174613d65794a33636d6c305a55746c65534936496e4a79576d785a634564485932527954485a7362306c596430645563566734576b4652546e4e434f5545774969776959573576626e6c746233567a535751694f69497a5a5467305a44417a4e79316a4d6a686c4c54526b4e7a59744f575a694f43316b5a5745774f474a694d574d314f4749694c434a6c646d567564434936496c425349485a705a58646c5a434973496e42796233426c636e52705a584d694f6e736963484a4a5a434936496a4e6c4f44526b4d444d334c574d794f4755744e4751334e6930355a6d49344c57526c59544134596d4978597a553459694a3966513d3d)
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic
Learn how to fix vulnerabilities with free interactive lessons:
🦉 Directory Traversal
🦉 Missing Release of Memory after Effective Lifetime
🦉 Use After Free