-
Notifications
You must be signed in to change notification settings - Fork 55
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update Zipkin to address vulnerable version of protobuf-java/netty-common/etc. #230
Comments
openzipkin/docker-java#92 updates Docker images |
With #232 merged, I believe this should be addressed - trivy is passing now. |
Great, thanks! |
Any chance for a new tag/docker image where the vulnerability scan is clean please? |
I'd like to get #228 sorted, and then I think we can do a new release. |
Sounds perfect, thank you! |
2.2.6 is released now with this fix. |
Describe the Bug
The current container (openzipkin/zipkin-gcp:2.2.5) is reported to contain multiple vulnerable components.
Steps to Reproduce
trivy image --ignore-unfixed openzipkin/zipkin-gcp:2.2.5
Expected Behaviour
Ideally no known vulnerabilities.
The text was updated successfully, but these errors were encountered: