This repository has been archived by the owner on Jun 22, 2024. It is now read-only.
Fix permission in Base #28
scan-dockerfile.yml
on: pull_request
Scan Dockerfile vulnerabilities
19s
Annotations
3 notices
DS029:
NodeChromium/Dockerfile#L37
Artifact: NodeChromium/Dockerfile\nType: dockerfile\nVulnerability DS029\nSeverity: HIGH\nMessage: '--no-install-recommends' flag is missed: 'apt-get update -qqy && apt-get -qqy install chromium-driver && rm -rf /var/lib/apt/lists/* /var/cache/apt/*'\nLink: [DS029](https://avd.aquasec.com/misconfig/ds029)
|
DS029:
NodeChromium/Dockerfile#L18
Artifact: NodeChromium/Dockerfile\nType: dockerfile\nVulnerability DS029\nSeverity: HIGH\nMessage: '--no-install-recommends' flag is missed: 'echo "deb http://deb.debian.org/debian/ bookworm main" >> /etc/apt/sources.list && apt-get update -qqy && apt-get -qqy install chromium && rm -rf /var/lib/apt/lists/* /var/cache/apt/*'\nLink: [DS029](https://avd.aquasec.com/misconfig/ds029)
|
DS029:
NodeFirefox/Dockerfile.multi-arch#L27
Artifact: NodeFirefox/Dockerfile.multi-arch\nType: dockerfile\nVulnerability DS029\nSeverity: HIGH\nMessage: '--no-install-recommends' flag is missed: 'echo "deb http://deb.debian.org/debian/ sid main" >> /etc/apt/sources.list && apt-get update -qqy && apt-get install libavcodec-extra -y && wget https://snapshot.debian.org/archive/debian/20231208T150859Z/pool/main/f/firefox/firefox_120.0.1-1_`dpkg --print-architecture`.deb -O firefox.deb'\nLink: [DS029](https://avd.aquasec.com/misconfig/ds029)
|