Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

trivy: Ignore CVE-2024-26147 (helm) #9217

Closed
wants to merge 1 commit into from
Closed

Conversation

davidjumani
Copy link
Contributor

@davidjumani davidjumani commented Mar 4, 2024

Description

Updating Trivy ignore list because the impact of Helm upgrade is minimal, and does not impact the control and data planes of Gloo. Only glooctl can be impacted on installs / upgradese.

Context

solo-io#9187

Checklist:

  • I have performed a self-review of my own code
  • I have commented my code, particularly in hard-to-understand areas
  • I have made corresponding changes to the documentation
  • I have added tests that prove my fix is effective or that my feature works

BOT NOTES:
resolves solo-io#9187

@github-actions github-actions bot added the keep pr updated signals bulldozer to keep pr up to date with base branch label Mar 4, 2024
@solo-changelog-bot
Copy link

Issues linked to changelog:
solo-io#9187

@davidjumani
Copy link
Contributor Author

/skip-ci

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
keep pr updated signals bulldozer to keep pr up to date with base branch
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant