redhat-cop/namespace-configuration-operator

Many CVEs

davidkarlsen opened this issue · 3 comments

The latest release is quite old - and if you scan the image with RHACS it will show a number of vulnerabilities.
Should perhaps dependabot be added - some upgrades done and a new release be pushed?

did the new release in November fix these concerns? Can I close this issue?

New CVEs have appeared in the mean-time:
Screenshot 2024-01-08 at 13 16 58
but I don't think they are all relevant - so I'd say close it for now.

Regular updates (for instance using dependabot) along with regular updates will fix the situation permanently.