Skip to content
Discussion options

You must be logged in to vote

Hi @cskita,

Thank you for opening the discussion. Glad to read you're using Microcks ;-)

The nightly tagged image is the most up-to-date regarding security issues. We're monitoring them using GitHub Dependabot alerts, Quay.io scans, and Docker Scout, and are aware that some libraries or base container images need to be refreshed. Typically, the microcks and microcks-uber should receive updates on Spring Boot (to solve the Tomcat-related CVEs) and on the ubi9-minimal base container image (to solve the Python-related ones).

Within a version development iteration (you may check RELEASE.md for more details on our release lifecycle), we typically do at least 2 updates of base libraries and con…

Replies: 1 comment 2 replies

Comment options

You must be logged in to vote
2 replies
@lbroudoux
Comment options

@cskita
Comment options

Answer selected by lbroudoux
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Category
Q&A
Labels
None yet
2 participants