Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Docker - Security problem using an older version of Tomcat (v 9.0.65) #10476

Open
Jean-arthis opened this issue Jul 15, 2024 · 0 comments
Open

Comments

@Jean-arthis
Copy link

Jean-arthis commented Jul 15, 2024

FROM tomcat:9-jdk11-openjdk AS mother

The MapStore docker image is based on a Tomcat docker image named "tomcat:9-jdk11-openjdk" (https://hub.docker.com/layers/library/tomcat/9-jdk11-openjdk/images/sha256-5a5d1f2d1f71618995c96f55b3939773fa33700bc7601328032512a49e7dffee?context=explore).
This image uses Tomcat version 9.0.65 and is 2 years old. It is affected by 12 critical and 32 severe vulnerabilities.
For security reasons, an upgrade to a more recent version of Tomcat would resolve several vulnerabilities.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

1 participant