mongo-express-docker icon indicating copy to clipboard operation
mongo-express-docker copied to clipboard

Several critical vulnerabilities detected in image mongo-express:0.54.0

Open dilshad18 opened this issue 4 years ago • 1 comments

Hi, is there any plan to fix these vulnerabilities in the new image?

mongo-express image tag 0.54.0 has 7 critical vulnerabilities and the rest of the other images also have the same vulnerabilities.

image

dilshad18 avatar Dec 07 '21 08:12 dilshad18

@dilshad18 can you check that #77 covers all of these CVEs?

If it makes it easier to scan, I have the same change in my fork with a https://github.com/BlackthornYugen/mongo-express-docker/pull/3 that has built this container:

ghcr.io/blackthornyugen/mongo-express-docker:pr-3

BlackthornYugen avatar May 11 '22 17:05 BlackthornYugen