Skip to content

[Snyk] Security upgrade nginx from 1.19-alpine to 1.25.4-alpine

KimLinHuiqian requested to merge snyk-fix-16fdc2783500f5c77f7fbb66730f0689 into main

Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.

Changes included in this Merge Request

  • Dockerfile

We recommend upgrading to nginx:1.25.4-alpine, as this image has only 1 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Some of the most important vulnerabilities in your base image include:

Severity Priority Score / 1000 Issue Exploit Maturity
critical severity 714 Out-of-bounds Read
SNYK-ALPINE313-APKTOOLS-1533754
No Known Exploit
critical severity 714 Double Free
SNYK-ALPINE313-CURL-1585246
No Known Exploit
critical severity 714 Double Free
SNYK-ALPINE313-CURL-1585246
No Known Exploit
critical severity 714 Incorrect Default Permissions
SNYK-ALPINE313-CURL-2938009
No Known Exploit
critical severity 714 Buffer Overflow
SNYK-ALPINE313-OPENSSL-1569448
No Known Exploit

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information: 🧐 View latest project report

🛠 Adjust project settings


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Double Free 🦉 Incorrect Default Permissions

Merge request reports