Skip to content

Conversation

@officialmofabs
Copy link
Collaborator

@officialmofabs officialmofabs commented Jul 12, 2025

snyk-top-banner

Snyk has created this PR to fix 5 vulnerabilities in the dockerfile dependencies of this project.

Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.

Snyk changed the following file(s):

  • content/en/examples/service/access/Dockerfile

We recommend upgrading to nginx:1.29.0, as this image has only 90 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Vulnerabilities that will be fixed with an upgrade:

Issue Score
critical severity Out-of-bounds Write
SNYK-DEBIAN10-FREETYPE-1019582
  877  
high severity Out-of-bounds Write
SNYK-DEBIAN10-LIBWEBP-5893093
  852  
critical severity OS Command Injection
SNYK-DEBIAN10-OPENSSL-2807585
  566  
critical severity Out-of-bounds Write
SNYK-DEBIAN10-ZLIB-2976149
  542  
critical severity OS Command Injection
SNYK-DEBIAN10-OPENSSL-2933515
  472  

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 OS Command Injection

Summary by Sourcery

Bug Fixes:

  • Update nginx base image from 1.17.3 to 1.29.0 in content/en/examples/service/access/Dockerfile to fix known Debian package vulnerabilities
@sourcery-ai
Copy link

sourcery-ai bot commented Jul 12, 2025

Reviewer's Guide

This PR upgrades the Docker base image from nginx:1.17.3 to nginx:1.29.0 to address multiple high and critical vulnerabilities in the underlying Debian packages.

Flow diagram for Docker image build process after nginx upgrade

flowchart TD A[Start Docker build] B[Pull nginx:1.29.0 image] C[Remove default nginx config] D[Copy custom frontend-nginx.conf] E[Build complete] A --> B --> C --> D --> E 
Loading

File-Level Changes

Change Details Files
Bump nginx base image version
  • Updated FROM directive from nginx:1.17.3 to nginx:1.29.0
content/en/examples/service/access/Dockerfile

Tips and commands

Interacting with Sourcery

  • Trigger a new review: Comment @sourcery-ai review on the pull request.
  • Continue discussions: Reply directly to Sourcery's review comments.
  • Generate a GitHub issue from a review comment: Ask Sourcery to create an
    issue from a review comment by replying to it. You can also reply to a
    review comment with @sourcery-ai issue to create an issue from it.
  • Generate a pull request title: Write @sourcery-ai anywhere in the pull
    request title to generate a title at any time. You can also comment
    @sourcery-ai title on the pull request to (re-)generate the title at any time.
  • Generate a pull request summary: Write @sourcery-ai summary anywhere in
    the pull request body to generate a PR summary at any time exactly where you
    want it. You can also comment @sourcery-ai summary on the pull request to
    (re-)generate the summary at any time.
  • Generate reviewer's guide: Comment @sourcery-ai guide on the pull
    request to (re-)generate the reviewer's guide at any time.
  • Resolve all Sourcery comments: Comment @sourcery-ai resolve on the
    pull request to resolve all Sourcery comments. Useful if you've already
    addressed all the comments and don't want to see them anymore.
  • Dismiss all Sourcery reviews: Comment @sourcery-ai dismiss on the pull
    request to dismiss all existing Sourcery reviews. Especially useful if you
    want to start fresh with a new review - don't forget to comment
    @sourcery-ai review to trigger a new review!

Customizing Your Experience

Access your dashboard to:

  • Enable or disable review features such as the Sourcery-generated pull request
    summary, the reviewer's guide, and others.
  • Change the review language.
  • Add, remove or edit custom review instructions.
  • Adjust other review settings.

Getting Help

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

3 participants