Skip to content

Bump base image to chainguard jdk image to reduce CVE #125

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
wants to merge 4 commits into
base: main
Choose a base branch
from

Conversation

priyanka2211
Copy link

References

  • TODO

Submitter checklist

  • Recommended: Join WireMock Slack to get any help in #help-contributing or a project-specific channel like #wiremock-java
  • The PR request is well described and justified, including the body and the references
  • The PR title represents the desired changelog entry
  • The repository's code style is followed (see the contributing guide)
  • Test coverage that demonstrates that the change works as expected
  • For new features, there's necessary documentation in this pull request or in a subsequent PR to wiremock.org

dependabot bot and others added 4 commits September 13, 2024 14:03
Bumps eclipse-temurin from 11.0.24_8-jre to 20.0.2_9-jre.

---
updated-dependencies:
- dependency-name: eclipse-temurin
  dependency-type: direct:production
  update-type: version-update:semver-major
...

Signed-off-by: dependabot[bot] <[email protected]>
@nathanlaceyraft
Copy link

I'm not able to download that version.
I think you need to pay chainguard to get that file.

@yaron
Copy link

yaron commented May 16, 2025

Maybe you could switch to the ubi9-minimal version of the eclipse-temurin image?

@nathanlaceyraft
Copy link

or something like gcr.io/distroless/java17-debian12:nonroot

you want an image that isn't running as root if possible

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

3 participants