Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Check docker image CVEs in vulnerabilities workflow #1480

Merged

Conversation

francbartoli
Copy link
Contributor

Overview

Check CVEs in the Docker image via trivy. Limitations:

  • Ignore unfixed CVEs

Related issue / discussion

#1479

Additional information

None

Dependency policy (RFC2)

  • I have ensured that this PR meets RFC2 requirements

Updates to public demo

Contributions and licensing

(as per https://github.com/geopython/pygeoapi/blob/master/CONTRIBUTING.md#contributions-and-licensing)

  • I'd like to contribute [feature X|bugfix Y|docs|something else] to pygeoapi. I confirm that my contributions to pygeoapi will be compatible with the pygeoapi license guidelines at the time of contribution
  • I have already previously agreed to the pygeoapi Contributions and Licensing Guidelines

@francbartoli francbartoli self-assigned this Jan 6, 2024
@francbartoli francbartoli force-pushed the feature/scan-docker-image-cves branch 2 times, most recently from 3555938 to 37deb57 Compare January 6, 2024 23:23
Fix working directory

Fix working directory

Fix working directory
@francbartoli francbartoli force-pushed the feature/scan-docker-image-cves branch from 37deb57 to 4529e4f Compare January 6, 2024 23:28
Use trivy action
@francbartoli francbartoli force-pushed the feature/scan-docker-image-cves branch from a0f7073 to 014b28d Compare January 6, 2024 23:59
@tomkralidis tomkralidis merged commit e9bb5dc into geopython:master Jan 7, 2024
4 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants