hpvd opened a new issue, #18348:
URL: https://github.com/apache/pulsar/issues/18348

   ### Search before asking
   
   - [X] I searched in the [issues](https://github.com/apache/pulsar/issues) 
and found nothing similar.
   
   
   ### Version
   
   v2.10.2
   
   ### Minimal reproduce step
   
   look into trivy powered inspection for vulnerabilities
   at artifacthub.io
   https://artifacthub.io/packages/helm/apache/pulsar?modal=security-report
   
   open details of in the latest helm chart v3.0.0 included pulsar v2.10.2 image
   
   
   ### What did you expect to see?
   
   very few fixable vulnerabilities, since v2.10.2 was released just 8 days ago 
https://github.com/apache/pulsar/releases
   
   ### What did you see instead?
   
   - 72 vulnerabilities have been detected in the image
   - 35 of these should be fixable with a version bump of dependencies.
   
   
![2022-11-04_17h06_11](https://user-images.githubusercontent.com/5681880/200025536-a6808fb3-2f4a-4e31-92ba-9c5f61ebe4f1.png)
   
   
![2022-11-04_17h03_17](https://user-images.githubusercontent.com/5681880/200025573-871fc438-6d24-4788-90c9-cce8bf7ab477.png)
   
   
   ### Anything else?
   
   - this is related to
   https://github.com/apache/pulsar/issues/18338
   - this is a follow up of
   https://github.com/apache/pulsar/issues/18041
   - this is part of
   https://github.com/apache/pulsar-helm-chart/issues/334
   
   ### Are you willing to submit a PR?
   
   - [ ] I'm willing to submit a PR!


-- 
This is an automated message from the Apache Git Service.
To respond to the message, please log on to GitHub and use the
URL above to go to the specific comment.

To unsubscribe, e-mail: [email protected]

For queries about this service, please contact Infrastructure at:
[email protected]

Reply via email to