Skip to content

Trivy reports one high vulnerability in WaveDB 0.2.0 Linux AMD64 #2457

New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Open
sulhicader opened this issue Apr 15, 2025 · 1 comment
Open

Trivy reports one high vulnerability in WaveDB 0.2.0 Linux AMD64 #2457

sulhicader opened this issue Apr 15, 2025 · 1 comment
Labels
bug Bug in code

Comments

@sulhicader
Copy link
Collaborator

Wave SDK Version, OS

WaveDB 0.2.0 Linux AMD64

Actual behavior

Image

One high vulnerability is detected in the WaveDB 0.2.0 according to the trivy report. This is a blocker for the release of H2O Wave Drive app as all the High and Critical vulnerabilities in Wave Drive app should be fixed for 25.04.0 Hybrid Cloud release.

Expected behavior

Should be fix all the high and critical vulnerabilities.

Steps To Reproduce

  1. Do this
  2. Do that
  3. Do something else
  4. See error
@sulhicader sulhicader added the bug Bug in code label Apr 15, 2025
@mturoci
Copy link
Collaborator

mturoci commented Apr 25, 2025

New WaveDB released in https://github.com/h2oai/wave/releases/tag/v1.6.5. Please give it a try and let me know if all vulnerabilities were adressed.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Bug in code
Projects
None yet
Development

No branches or pull requests

2 participants