-
Notifications
You must be signed in to change notification settings - Fork 9k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update nginx base image to fix CVEs #8697
Conversation
Update nginx to fix CVEs - CVE-2023-29469 - CVE-2023-28484
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
LGTM. Thank you!
NOTE: this would be technically handled by dependabot automatic update during today or tommorow. swagger-ui/.github/dependabot.yaml Line 17 in 8955056
|
@bkonicek looks like the More info in https://github.com/swagger-api/swagger-ui/actions/runs/5076116027/jobs/9117981718 |
Description
Update nginx to fix CVEs
Motivation and Context
There are 2 open CVEs for the
nginx:1.23.4-alpine
base Docker image. They are both fixed in v1.24.0How Has This Been Tested?
My PR contains...
src/
is unmodified: changes to documentation, CI, metadata, etc.)package.json
)My changes...
Documentation
Automated tests