Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

chore: upgrade base-server to 1.15.7 and base-builder to 1.14.8 #306

Open
wants to merge 1 commit into
base: main
Choose a base branch
from

Conversation

robcao
Copy link

@robcao robcao commented Apr 1, 2024

What was changed

I upgraded the temporalio/base-server image to 1.15.7, and the temporalio/base-builder image to 1.14.8.

Why?

I did this to match what was in the docker builds repository.

It looks like base server image is several months old, and as a result, had accumulated some vulnerabilities over time. The purpose of this pull request is to upgrade the base image to resolve most of the vulnerabilities.

Checklist

  1. Closes

  2. How was this tested:

I built the docker image locally and compared the vulnerabilities.

before with 2.25.0

image

now

image

  1. Any docs updates needed?

@CLAassistant
Copy link

CLAassistant commented Apr 1, 2024

CLA assistant check
All committers have signed the CLA.

@CLAassistant
Copy link

CLA assistant check
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
2 participants