Skip to content

Conversation

parseplatformorg
Copy link
Contributor

snyk-top-banner

Snyk has created this PR to fix 4 vulnerabilities in the dockerfile dependencies of this project.

Keeping your Docker base image up-to-date means you’ll benefit from security fixes in the latest version of your chosen image.

Snyk changed the following file(s):

  • Dockerfile

We recommend upgrading to node:20.19.0-alpine3.20, as this image has only 0 known vulnerabilities. To do this, merge this pull request, then verify your application still works as expected.

Vulnerabilities that will be fixed with an upgrade:

Issue Score
low severity CVE-2025-26519
SNYK-ALPINE320-MUSL-8720638
  364  
low severity CVE-2025-26519
SNYK-ALPINE320-MUSL-8720638
  364  
low severity CVE-2024-9143
SNYK-ALPINE320-OPENSSL-8235201
  364  
low severity CVE-2024-13176
SNYK-ALPINE320-OPENSSL-8690013
  364  
low severity CVE-2024-12797
SNYK-ALPINE320-OPENSSL-8710359
  364  

Important

  • Check the changes in this PR to ensure they won't cause issues with your project.
  • Max score is 1000. Note that the real score may have changed since the PR was raised.
  • This PR was automatically created by Snyk using the credentials of a real user.

Note: You are seeing this because you or someone else with access to this repository has authorized Snyk to open fix PRs.

For more information:
🧐 View latest project report
📜 Customise PR templates
🛠 Adjust project settings
📚 Read about Snyk's upgrade logic


Learn how to fix vulnerabilities with free interactive lessons:

🦉 Learn about vulnerability in an interactive lesson of Snyk Learn.

Copy link

I will reformat the title to use the proper commit message syntax.

@parse-github-assistant parse-github-assistant bot changed the title [Snyk] Security upgrade node from 20.18.2-alpine3.20 to 20.19.0-alpine3.20 refactor: Security upgrade node from 20.18.2-alpine3.20 to 20.19.0-alpine3.20 Mar 16, 2025
Copy link

parse-github-assistant bot commented Mar 16, 2025

🚀 Thanks for opening this pull request!

Copy link

uffizzi-cloud bot commented Mar 16, 2025

Uffizzi Ephemeral Environment deployment-61907

⌚ Updated Mar 16, 2025, 07:49 UTC

☁️ https://app.uffizzi.com/github.com/parse-community/parse-dashboard/pull/2676

📄 View Application Logs etc.

What is Uffizzi? Learn more

@mtrezza mtrezza changed the title refactor: Security upgrade node from 20.18.2-alpine3.20 to 20.19.0-alpine3.20 fix: Security upgrade node from 20.18.2-alpine3.20 to 20.19.0-alpine3.20 Mar 16, 2025
@mtrezza mtrezza merged commit d251334 into alpha Mar 16, 2025
10 checks passed
@mtrezza mtrezza deleted the snyk-fix-bb52474659b2be94d22253bc006ad924 branch March 16, 2025 18:12
parseplatformorg pushed a commit that referenced this pull request Mar 16, 2025
# [6.2.0-alpha.2](6.2.0-alpha.1...6.2.0-alpha.2) (2025-03-16)

### Bug Fixes

* Security upgrade node from 20.18.2-alpine3.20 to 20.19.0-alpine3.20 ([#2676](#2676)) ([d251334](d251334))
@parseplatformorg
Copy link
Contributor Author

🎉 This change has been released in version 6.2.0-alpha.2

@parseplatformorg parseplatformorg added the state:released-alpha Released as alpha version label Mar 16, 2025
parseplatformorg pushed a commit that referenced this pull request Mar 17, 2025
# [6.2.0](6.1.0...6.2.0) (2025-03-17)

### Bug Fixes

* Bump @babel/runtime from 7.20.13 to 7.26.10 ([#2677](#2677)) ([37f4ea6](37f4ea6))
* Dashboard crashes when setting `unique` filter on pointer field in data browser ([#2660](#2660)) ([68fdbe8](68fdbe8))
* Security upgrade node from 20.18.2-alpine3.20 to 20.19.0-alpine3.20 ([#2676](#2676)) ([d251334](d251334))

### Features

* Use Enter key to edit cell content in data browser ([#2672](#2672)) ([ac2dc41](ac2dc41))
@parseplatformorg
Copy link
Contributor Author

🎉 This change has been released in version 6.2.0

@parseplatformorg parseplatformorg added the state:released Released as stable version label Mar 17, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
state:released Released as stable version state:released-alpha Released as alpha version
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants