Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Security Vulnerabilities Found #985

Open
jayantb-95 opened this issue Mar 12, 2024 · 3 comments
Open

Security Vulnerabilities Found #985

jayantb-95 opened this issue Mar 12, 2024 · 3 comments

Comments

@jayantb-95
Copy link

  • Which image of the operator/spilo are you using?
    registry.opensource.zalan.do/acid/postgres-operator:v1.10.1
    ghcr.io/zalando/spilo-15:3.0-p1

  • Where do you run it ?
    Bare Metal Openshift

  • Are you running Postgres Operator in production?
    yes

  • Type of issue?
    Security Vulnerability

rdbms_vulnerabilities_github.xlsx

Hi Team Zalando,
We've deployed the postgres-operator in our environment with slight modification of splitting this single repo into 3 different helm charts, mainly CRDs, Operator & the Cluster
We're reported various security vulnerabilities as part of the security scan (excel sheet attached), with reference to the CVE-ID respectively.

@hughcapet
Copy link
Member

the latest image is ghcr.io/zalando/spilo-15:3.2-p1

https://github.com/zalando/spilo/pkgs/container/spilo-15

@dpmillerau
Copy link

github actually lists 3.0-p1 as the latest release.

@hughcapet
Copy link
Member

we;ve stopped publishing releases. only building new images from time to time

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants