k3d icon indicating copy to clipboard operation
k3d copied to clipboard

[BUG] Several vulnerabilites found within the `k3d-proxy` docker image.

Open jackson-chris opened this issue 7 months ago • 0 comments

What did you do

Installed k3d version 5.7.2 without any issues, then performed security scans using JFROG Xray on the images and found several high and critical vulnerabilities listed in attached text document.

What did you expect to happen

These vulnerabilities all have released fixes and should be updated to remediate the CVEs. Adoption of k3d is limited when a high amount of CVEs are present and show up on consumers security scans.

Screenshots or terminal output

See scan-results.txt

Which OS & Architecture

N/A

Which version of k3d

5.7.2

Which version of docker

N/A

jackson-chris avatar Jul 18 '24 17:07 jackson-chris