[PR #215] Security upgrade node from lts-buster to current-slim #903

Open
opened 2026-03-07 21:26:27 -06:00 by GiteaMirror · 0 comments
Owner

📋 Pull Request Information

Original PR: https://github.com/docker/awesome-compose/pull/215
Author: @cloudgeek7
Created: 2/22/2022
Status: 🔄 Open

Base: masterHead: patch-6


📝 Commits (1)

  • 5f44db3 Security upgrade node from lts-buster to current-slim

📊 Changes

1 file changed (+1 additions, -1 deletions)

View changed files

📝 react-express-mongodb/frontend/Dockerfile (+1 -1)

📄 Description

Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.

Changes included in this PR

  • react-express-mongodb/frontend/Dockerfile

We recommend upgrading to node:current-slim, as this image has only 44 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Some of the most important vulnerabilities in your base image include:

Severity Priority Score / 1000 Issue Exploit Maturity
Critical 500 Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2331803 No Known Exploit
Critical 500 Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2331813 No Known Exploit
 Critical 500 Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2331818 No Known Exploit
 Critical 500 Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2359258 No Known Exploit
 Critical 500 Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2384929 No Known Exploit


🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.

## 📋 Pull Request Information **Original PR:** https://github.com/docker/awesome-compose/pull/215 **Author:** [@cloudgeek7](https://github.com/cloudgeek7) **Created:** 2/22/2022 **Status:** 🔄 Open **Base:** `master` ← **Head:** `patch-6` --- ### 📝 Commits (1) - [`5f44db3`](https://github.com/docker/awesome-compose/commit/5f44db3cf02e5fa198ea442a4a4dc23e6d310cd9) Security upgrade node from lts-buster to current-slim ### 📊 Changes **1 file changed** (+1 additions, -1 deletions) <details> <summary>View changed files</summary> 📝 `react-express-mongodb/frontend/Dockerfile` (+1 -1) </details> ### 📄 Description <p dir="auto" style="box-sizing: border-box; margin-top: 0px !important; margin-bottom: 16px; color: rgb(201, 209, 217); font-family: -apple-system, &quot;system-ui&quot;, &quot;Segoe UI&quot;, Helvetica, Arial, sans-serif, &quot;Apple Color Emoji&quot;, &quot;Segoe UI Emoji&quot;; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(13, 17, 23); text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;">Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.</p><h4 dir="auto" style="box-sizing: border-box; margin-top: 24px; margin-bottom: 16px; font-size: 14px; font-weight: 600; line-height: 1.25; color: rgb(201, 209, 217); font-family: -apple-system, &quot;system-ui&quot;, &quot;Segoe UI&quot;, Helvetica, Arial, sans-serif, &quot;Apple Color Emoji&quot;, &quot;Segoe UI Emoji&quot;; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(13, 17, 23); text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;">Changes included in this PR</h4><ul dir="auto" style="box-sizing: border-box; padding-left: 2em; margin-top: 0px; margin-bottom: 16px; color: rgb(201, 209, 217); font-family: -apple-system, &quot;system-ui&quot;, &quot;Segoe UI&quot;, Helvetica, Arial, sans-serif, &quot;Apple Color Emoji&quot;, &quot;Segoe UI Emoji&quot;; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(13, 17, 23); text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;"><li style="box-sizing: border-box; margin-left: 0px;">react-express-mongodb/frontend/Dockerfile</li></ul><p dir="auto" style="box-sizing: border-box; margin-top: 0px; margin-bottom: 16px; color: rgb(201, 209, 217); font-family: -apple-system, &quot;system-ui&quot;, &quot;Segoe UI&quot;, Helvetica, Arial, sans-serif, &quot;Apple Color Emoji&quot;, &quot;Segoe UI Emoji&quot;; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(13, 17, 23); text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;">We recommend upgrading to<span> </span><code style="box-sizing: border-box; font-family: ui-monospace, SFMono-Regular, &quot;SF Mono&quot;, Menlo, Consolas, &quot;Liberation Mono&quot;, monospace; font-size: 11.9px; padding: 0.2em 0.4em; margin: 0px; background-color: var(--color-neutral-muted); border-radius: 6px;">node:current-slim</code>, as this image has only 44 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.</p><p dir="auto" style="box-sizing: border-box; margin-top: 0px; margin-bottom: 16px; color: rgb(201, 209, 217); font-family: -apple-system, &quot;system-ui&quot;, &quot;Segoe UI&quot;, Helvetica, Arial, sans-serif, &quot;Apple Color Emoji&quot;, &quot;Segoe UI Emoji&quot;; font-size: 14px; font-style: normal; font-variant-ligatures: normal; font-variant-caps: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: start; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; -webkit-text-stroke-width: 0px; background-color: rgb(13, 17, 23); text-decoration-thickness: initial; text-decoration-style: initial; text-decoration-color: initial;">Some of the most important vulnerabilities in your base image include:</p> Severity | Priority Score / 1000 | Issue | Exploit Maturity -- | -- | -- | -- Critical | 500 | Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2331803 | No Known Exploit Critical | 500 | Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2331813 | No Known Exploit  Critical | 500 | Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2331818 | No Known Exploit  Critical | 500 | Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2359258 | No Known Exploit  Critical | 500 | Integer Overflow or WraparoundSNYK-DEBIAN10-EXPAT-2384929 | No Known Exploit [](https://camo.githubusercontent.com/e8801c915c6aef37567a907c70a535ca95335c2d490a3340d06bba439a1ed005/68747470733a2f2f7265732e636c6f7564696e6172792e636f6d2f736e796b2f696d6167652f75706c6f61642f775f32302c685f32302f76313536313937373831392f69636f6e2f632e706e67) --- <sub>🔄 This issue represents a GitHub Pull Request. It cannot be merged through Gitea due to API limitations.</sub>
GiteaMirror added the pull-request label 2026-03-07 21:26:27 -06:00
Sign in to join this conversation.
1 Participants
Notifications
Due Date
No due date set.
Dependencies

No dependencies set.

Reference: github-starred/awesome-compose#903