[PR #211] Security upgrade node from 14.4.0-alpine to 14.18.2-alpine #899

Open
opened 2026-03-07 21:26:21 -06:00 by GiteaMirror · 0 comments
Owner

📋 Pull Request Information

Original PR: https://github.com/docker/awesome-compose/pull/211
Author: @cloudgeek7
Created: 2/19/2022
Status: 🔄 Open

Base: masterHead: patch-3


📝 Commits (1)

📊 Changes

1 file changed (+1 additions, -1 deletions)

View changed files

📝 vuejs/vuejs/Dockerfile (+1 -1)

📄 Description

Changes included in this PR

  • vuejs/vuejs/Dockerfile

We recommend upgrading to node:14.18.2-alpine, as this image has only 0 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Some of the most important vulnerabilities in your base image include:

Severity Priority Score / 1000 Issue Exploit Maturity
  500 Out-of-bounds ReadSNYK-ALPINE311-APKTOOLS-1534687 No Known Exploit
  400 Improper Certificate ValidationSNYK-ALPINE311-OPENSSL-1089242 No Known Exploit
  400 Out-of-bounds ReadSNYK-ALPINE311-OPENSSL-1569447 No Known Exploit
  500 Buffer OverflowSNYK-ALPINE311-OPENSSL-1569451 No Known Exploit
  500 Buffer OverflowSNYK-ALPINE311-OPENSSL-1569451 No Known Exploit


🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.

## 📋 Pull Request Information **Original PR:** https://github.com/docker/awesome-compose/pull/211 **Author:** [@cloudgeek7](https://github.com/cloudgeek7) **Created:** 2/19/2022 **Status:** 🔄 Open **Base:** `master` ← **Head:** `patch-3` --- ### 📝 Commits (1) - [`f06d93b`](https://github.com/docker/awesome-compose/commit/f06d93bd78e50e904cfc8e26f6829011a42b169b) Update Dockerfile ### 📊 Changes **1 file changed** (+1 additions, -1 deletions) <details> <summary>View changed files</summary> 📝 `vuejs/vuejs/Dockerfile` (+1 -1) </details> ### 📄 Description <h4 dir="auto" style="box-sizing: border-box; margin-top: 24px; margin-bottom: 16px; font-size: 14px; font-weight: 600; line-height: 1.25; color: rgb(201, 209, 217); font-family: -apple-system, &quot;system-ui&quot;, &quot;Segoe UI&quot;, Helvetica, Arial, sans-serif, &quot;Apple Color Emoji&quot;, &quot;Segoe UI Emoji&quot;; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(13, 17, 23); text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;">Changes included in this PR</h4><ul dir="auto" style="box-sizing: border-box; padding-left: 2em; margin-top: 0px; margin-bottom: 16px; color: rgb(201, 209, 217); font-family: -apple-system, &quot;system-ui&quot;, &quot;Segoe UI&quot;, Helvetica, Arial, sans-serif, &quot;Apple Color Emoji&quot;, &quot;Segoe UI Emoji&quot;; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(13, 17, 23); text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"><li style="box-sizing: border-box; margin-left: 0px;">vuejs/vuejs/Dockerfile</li></ul><p dir="auto" style="box-sizing: border-box; margin-top: 0px; margin-bottom: 16px; color: rgb(201, 209, 217); font-family: -apple-system, &quot;system-ui&quot;, &quot;Segoe UI&quot;, Helvetica, Arial, sans-serif, &quot;Apple Color Emoji&quot;, &quot;Segoe UI Emoji&quot;; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(13, 17, 23); text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;">We recommend upgrading to<span> </span><code style="box-sizing: border-box; font-family: ui-monospace, SFMono-Regular, &quot;SF Mono&quot;, Menlo, Consolas, &quot;Liberation Mono&quot;, monospace; font-size: 11.9px; padding: 0.2em 0.4em; margin: 0px; background-color: var(--color-neutral-muted); border-radius: 6px;">node:14.18.2-alpine</code>, as this image has only 0 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.</p><p dir="auto" style="box-sizing: border-box; margin-top: 0px; margin-bottom: 16px; color: rgb(201, 209, 217); font-family: -apple-system, &quot;system-ui&quot;, &quot;Segoe UI&quot;, Helvetica, Arial, sans-serif, &quot;Apple Color Emoji&quot;, &quot;Segoe UI Emoji&quot;; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(13, 17, 23); text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;">Some of the most important vulnerabilities in your base image include:</p> Severity | Priority Score / 1000 | Issue | Exploit Maturity -- | -- | -- | --   | 500 | Out-of-bounds ReadSNYK-ALPINE311-APKTOOLS-1534687 | No Known Exploit   | 400 | Improper Certificate ValidationSNYK-ALPINE311-OPENSSL-1089242 | No Known Exploit   | 400 | Out-of-bounds ReadSNYK-ALPINE311-OPENSSL-1569447 | No Known Exploit   | 500 | Buffer OverflowSNYK-ALPINE311-OPENSSL-1569451 | No Known Exploit   | 500 | Buffer OverflowSNYK-ALPINE311-OPENSSL-1569451 | No Known Exploit [](https://camo.githubusercontent.com/e8801c915c6aef37567a907c70a535ca95335c2d490a3340d06bba439a1ed005/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f632e706e67) --- <sub>🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.</sub>
GiteaMirror added the pull-request label 2026-03-07 21:26:21 -06:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github-starred/awesome-compose#899