2
Release container images regularly even without new Vaultwarden version
Source: dani-garcia/vaultwarden#4591 · opened by @ondrejmo
I recently started to monitor the vulnerabilities in my cluster and I was kind of surprised that one the most CVE ridden images was Vaultwarden. I believe that this has nothing with Vaultwarden itself, rather they are contained in the dependencies and the image base.
It would be nice if it were possible to build and release new container images in regular intervals (e.g. monthly) even when there is no new version, so that the vulnerabilities in the included packages are patched faster.
It would be nice if it were possible to build and release new container images in regular intervals (e.g. monthly) even when there is no new version, so that the vulnerabilities in the included packages are patched faster.
No pledges yet. Be the first to back this.
Comments
Similar requests
Re-License of Vaultwarden to AGPLv3
26 votes · 0 comments
Prebuild-Archive possible? Excessive RAM requirements for Vaultwarden builds (>= 7GB during install/update)
1 vote · 0 comments
[Security] Default Port Should be 443
1 vote · 0 comments
Update Podman documentation to use Quadlet for systemd deployment
5 votes · 0 comments
Utilize checksum on vaultwarden.css
1 vote · 0 comments
No comments yet.