Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: Update from ubi9/go-toolset:1.22.7-1733160835 to ubi9/go-toolset:9.5-1736425641 #1370

Open
wants to merge 5 commits into
base: main
Choose a base branch
from

chore: Update from ubi9-minimal:9.5-1731593028 to ubi9-minimal:9.5-17…

d85fb3a
Select commit
Loading
Failed to load commit list.
Open

chore: Update from ubi9/go-toolset:1.22.7-1733160835 to ubi9/go-toolset:9.5-1736425641 #1370

chore: Update from ubi9-minimal:9.5-1731593028 to ubi9-minimal:9.5-17…
d85fb3a
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / Scorecard succeeded Jan 11, 2025 in 3s

4 new alerts including 4 medium severity security vulnerabilities

New alerts in code changed by this pull request

Security Alerts:

  • 4 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 17 in build/Dockerfile

See this annotation in the file changed.

Code scanning / Scorecard

Pinned-Dependencies Medium

score is 2: containerImage not pinned by hash
Remediation tip: pin your Docker image by updating registry.access.redhat.com/ubi9/go-toolset:9.5-1736425641 to registry.access.redhat.com/ubi9/go-toolset:9.5-1736425641@sha256:0109a9eea4f1b26ad979a4f7ddc9baa026c958445ec5961b33f2693da17fbb5c
Click Remediation section below for further remediation help

Check warning on line 37 in build/Dockerfile

See this annotation in the file changed.

Code scanning / Scorecard

Pinned-Dependencies Medium

score is 2: containerImage not pinned by hash
Remediation tip: pin your Docker image by updating registry.access.redhat.com/ubi9-minimal to registry.access.redhat.com/ubi9-minimal@sha256:b87097994ed62fbf1de70bc75debe8dacf3ea6e00dd577d74503ef66452c59d6
Click Remediation section below for further remediation help

Check warning on line 18 in project-clone/Dockerfile

See this annotation in the file changed.

Code scanning / Scorecard

Pinned-Dependencies Medium

score is 2: containerImage not pinned by hash
Remediation tip: pin your Docker image by updating registry.access.redhat.com/ubi9/go-toolset:9.5-1736425641 to registry.access.redhat.com/ubi9/go-toolset:9.5-1736425641@sha256:0109a9eea4f1b26ad979a4f7ddc9baa026c958445ec5961b33f2693da17fbb5c
Click Remediation section below for further remediation help

Check warning on line 40 in project-clone/Dockerfile

See this annotation in the file changed.

Code scanning / Scorecard

Pinned-Dependencies Medium

score is 2: containerImage not pinned by hash
Remediation tip: pin your Docker image by updating registry.access.redhat.com/ubi9-minimal to registry.access.redhat.com/ubi9-minimal@sha256:b87097994ed62fbf1de70bc75debe8dacf3ea6e00dd577d74503ef66452c59d6
Click Remediation section below for further remediation help