From 3186cf833efa109b48c1e5c5d5e679d84e36fab3 Mon Sep 17 00:00:00 2001 From: snyk-bot Date: Fri, 21 Jun 2024 20:18:13 +0000 Subject: [PATCH] fix: backend/Dockerfile to reduce vulnerabilities The following vulnerabilities are fixed with an upgrade: - https://snyk.io/vuln/SNYK-ALPINE320-BUSYBOX-7233533 - https://snyk.io/vuln/SNYK-ALPINE320-BUSYBOX-7233533 - https://snyk.io/vuln/SNYK-ALPINE320-BUSYBOX-7233533 - https://snyk.io/vuln/SNYK-ALPINE320-BUSYBOX-7233586 - https://snyk.io/vuln/SNYK-ALPINE320-BUSYBOX-7233586 --- backend/Dockerfile | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/backend/Dockerfile b/backend/Dockerfile index c2c0aae..043f62e 100644 --- a/backend/Dockerfile +++ b/backend/Dockerfile @@ -1,5 +1,5 @@ # Builder container to compile typescript -FROM node:lts-alpine AS build +FROM node:20.14.0-alpine3.20 AS build WORKDIR /usr/src/app # Install dependencies @@ -14,7 +14,7 @@ RUN npm run build -FROM node:lts-alpine +FROM node:20.14.0-alpine3.20 WORKDIR /app COPY package.json . COPY package-lock.json .