From e9fbdaf493356dc5ba3e160a3f2dee134efcc6d8 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Sat, 8 Feb 2025 05:32:12 +0000 Subject: [PATCH] fix: Dockerfile.production to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-ALPINE316-LIBWEBP-5902237 - https://snyk.io/vuln/SNYK-ALPINE316-NGHTTP2-6043732 - https://snyk.io/vuln/SNYK-ALPINE316-CURL-3320719 - https://snyk.io/vuln/SNYK-ALPINE316-CURL-5958908 - https://snyk.io/vuln/SNYK-ALPINE316-CURL-5958908 --- Dockerfile.production | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/Dockerfile.production b/Dockerfile.production index cf5fa0e9..57bcdfc0 100644 --- a/Dockerfile.production +++ b/Dockerfile.production @@ -11,7 +11,7 @@ COPY . ./ RUN npm run build ##stage 2. build the production (server) environment -FROM nginx:1.23.2-alpine +FROM nginx:1.27.4-alpine # Install curl and envsubst RUN apk --no-cache add curl