node-red-docker icon indicating copy to clipboard operation
node-red-docker copied to clipboard

The Node-red docker image v4.0.0-22-minimal uses vulnerable alpine version

Open OlgasAcc opened this issue 7 months ago • 4 comments

Hello,

It looks like the new image of v4.0.0-22-minimal uses alpine 3.20.0 as a base image in Dockerfile. The alpine:3.20.0 is vulnerable, but the defects have been already fixed in v.3.20.1. Could you please rebuild this docker image (in case you already use 3.20 in Dockerfile) or upgrade it to 3.20.1 (in case you explicitly set alpine:3.20.0)?

image

Thanks

OlgasAcc avatar Jun 25 '24 11:06 OlgasAcc