Keeping up with vulnerability reports for your images
latest-dev
) are excluded by default.Refer to version-specific vulnerability reports for information about vulnerabilities affecting development images. Learn morelatest-dev
.)Status | Description |
---|---|
Under review | Minimus is following up on the vulnerability report to confirm the report and determine if the vulnerable code affects the package. |
Affected | The vulnerability was confirmed by the Minimus team to be affecting the package. |
Unaffected | The vulnerability was determined to be a false-positive by Minimus. Reasoning is provided in a note. |
Pending upstream fix | Minimus is waiting for the source repo to publish a fix for the package. The image will be patched as soon as the fix becomes available. |
Fixed | A patch was applied to remediate the vulnerability. |
Fix not planned | Usually a fix is not planned for package versions that have reached their end of life (EOL). Reasoning is provided in a note. |