harvest icon indicating copy to clipboard operation
harvest copied to clipboard

Bump prom/prometheus container from v2.33.1 to v2.55.0

Open embusalacchi opened this issue 4 months ago • 4 comments

We are getting alerts that there are multiple high critical vulnerabilities in the prometheus image:

CVE-2021-41190 Medium CVE-2021-43816 Critical CVE-2022-23471 Medium CVE-2022-23648 High CVE-2022-24769 Medium CVE-2022-31030 Medium CVE-2023-25153 Medium CVE-2023-25173 High

Describe the solution you'd like Bump version from v2.33.1 to v2.55.0 (https://github.com/NetApp/harvest/blob/47c99d9a5f5ad6e5568667c4b09cc5f13fc70d7e/prom-stack.tmpl#L16)

Please note, I have manually update the prometheus containers in my environment to v2.55.0 and have seen no adverse effects.

embusalacchi avatar Oct 23 '24 13:10 embusalacchi