CodeQuality and CodeClimate images do not pass vulnerability checks

An ultimate customer has reported that their internal scans of the images we publish for codequality and its codeclimate image dependencies do not pass dependency vulnerability tests.

They've sent us attachments of reports for each of the images checked, and since some of their documents' content is sensitive, these are available at the internal link of https://gitlab.zendesk.com/agent/tickets/201921

(To gain access to Support's Zendesk as a GitLab Team Member, please follow https://about.gitlab.com/handbook/support/internal-support/#viewing-support-tickets)

They ran these checks on the image tag 0.83.19 which was the default in their GitLab version. However, the security reports have caught a number of issues with various dependent images that are tagged latest too.

The customer would like the reports addressed so they can clear org. requirements in using these images within their self-managed deployment.

Edited by Harsh Chouraria