neosync icon indicating copy to clipboard operation
neosync copied to clipboard

artifacthub.io security report

Open joshgubler opened this issue 7 months ago • 1 comments

ArtifactHub shows a lot of long standing security vulnerabilities. Is there a response to this documented anywhere? https://artifacthub.io/packages/helm/neosync/neosync?modal=security-report

Image

joshgubler avatar Apr 09 '25 21:04 joshgubler

Most of these are undoubtedly coming from our use of the debian:bookworm-slim image. We have a few deps that require CGO, which is why we currently use debian. If you have any recommendations for a slimmer image with less vulns, open to suggestions.

nickzelei avatar Apr 09 '25 22:04 nickzelei