argocd-image-updater icon indicating copy to clipboard operation
argocd-image-updater copied to clipboard

Vulnerabilities in latest release (v0.12.2). Please release a new version

Open fletch3555 opened this issue 2 years ago • 1 comments

image

https://quay.io/repository/argoprojlabs/argocd-image-updater?tab=tags

v0.12.2 has 8 critical vulnerabilities and numerous others. It was released 10 months ago. latest was tagged only a month ago and has a single critical vulnerability (libcurl, so probably already patched by the OS). Can we run a new build and get an updated release out please?

If there's anything I can do to help, please let me know.

fletch3555 avatar Nov 09 '23 17:11 fletch3555

Pinging again. We're at the 3 month mark since this was opened. Can we please get at least a comment from a maintainer so we know this project isn't dead?

fletch3555 avatar Feb 05 '24 15:02 fletch3555