Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Image Vulnerability] Vulnerabilities Found in "kafka-adobe-s3-sink-connector" Image (Example image) #2186

Closed
mellon-collie opened this issue Jul 18, 2023 · 4 comments
Labels
security Security related issues upstream-security
Projects

Comments

@mellon-collie
Copy link
Contributor

mellon-collie commented Jul 18, 2023

Container Image Vulnerability Report

The container vulnerability scanning GitHub action has found 269 vulnerabilities of High and Critical severity with fixes available for the kafka-adobe-s3-sink-connector container image.

Image

ghcr.io/kanisterio/kafka-adobe-s3-sink-connector

Tested Version

v9.99.9-dev

Details

The detailed report can be found here.

@mellon-collie mellon-collie added bug security Security related issues labels Jul 18, 2023
@github-actions
Copy link
Contributor

Thanks for opening this issue 👍. The team will review it shortly.

If this is a bug report, make sure to include clear instructions how on to reproduce the problem with minimal reproducible examples, where possible. If this is a security report, please review our security policy as outlined in SECURITY.md.

If you haven't already, please take a moment to review our project's Code of Conduct document.

@infraq infraq added this to To Be Triaged in Kanister Jul 18, 2023
@pavannd1 pavannd1 changed the title High/Severity vulnerabilities found with kafka-adobe-s3-sink-connector container image [Image Vulnerability] High/Critical Severity Vulnerabilities Found in "kafka-adobe-s3-sink-connector" Image Jul 18, 2023
@pavannd1 pavannd1 removed the bug label Jul 18, 2023
@github-actions
Copy link
Contributor

This issue is marked as stale due to inactivity. Add a new comment to reactivate it.

@hairyhum
Copy link
Contributor

Upstream images still have vulnerabilities

@hairyhum hairyhum removed the triage label Mar 15, 2024
@hairyhum hairyhum changed the title [Image Vulnerability] High/Critical Severity Vulnerabilities Found in "kafka-adobe-s3-sink-connector" Image [Image Vulnerability] Vulnerabilities Found in "kafka-adobe-s3-sink-connector" Image (Example image) Jun 12, 2024
@hairyhum
Copy link
Contributor

Wont-fix: upstream image is not keeping up to date. The image should only be used in examples.

Kanister automation moved this from To Be Triaged to Done Aug 20, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
security Security related issues upstream-security
Projects
Development

No branches or pull requests

3 participants