Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

[Snyk] Security upgrade python from 3.9.6 to 3.10.0b4 #1360

Merged
merged 2 commits into from
Nov 16, 2021

Conversation

snyk-bot
Copy link
Contributor

Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.

Changes included in this PR

  • Dockerfile

We recommend upgrading to python:3.10.0b4, as this image has only 389 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Some of the most important vulnerabilities in your base image include:

Severity Priority Score / 1000 Issue Exploit Maturity
high severity 614 Out-of-bounds Read
SNYK-DEBIAN11-OPENSSL-1569405
No Known Exploit
critical severity 714 Buffer Overflow
SNYK-DEBIAN11-OPENSSL-1569408
No Known Exploit
critical severity 500 Improper Input Validation
SNYK-DEBIAN11-PYTHON39-1290158
No Known Exploit
critical severity 500 Improper Input Validation
SNYK-DEBIAN11-PYTHON39-1290158
No Known Exploit
critical severity 500 Improper Input Validation
SNYK-DEBIAN11-PYTHON39-1290158
No Known Exploit

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report

🛠 Adjust project settings

@codecov-commenter
Copy link

codecov-commenter commented Sep 29, 2021

Codecov Report

Merging #1360 (72739d9) into main (6d7079d) will not change coverage.
The diff coverage is n/a.

Impacted file tree graph

@@           Coverage Diff           @@
##             main    #1360   +/-   ##
=======================================
  Coverage   90.08%   90.08%           
=======================================
  Files          51       51           
  Lines        2280     2280           
=======================================
  Hits         2054     2054           
  Misses        226      226           

Continue to review full report at Codecov.

Legend - Click here to learn more
Δ = absolute <relative> (impact), ø = not affected, ? = missing data
Powered by Codecov. Last update 6d7079d...72739d9. Read the comment docs.

Copy link
Member

@kfoley-18F kfoley-18F left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

🚢

@kfoley-18F kfoley-18F merged commit 0413874 into main Nov 16, 2021
@kfoley-18F kfoley-18F deleted the snyk-fix-c8dfad6d7aadbfa28c8dd55f578d7917 branch November 16, 2021 00:53
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants