You signed in with another tab or window. Reload to refresh your session.You signed out in another tab or window. Reload to refresh your session.You switched accounts on another tab or window. Reload to refresh your session.Dismiss alert
{{ message }}
Repository navigation
Commit 172a1ab
Browse filesBrowse the repository at this point in the historyBrowse files
fix(ci): apply security patches in production image build
Debian 13 (trixie) base has fixable high-severity CVEs. Adding apt-get
upgrade after apt-get update to apply all available security patches at
build time, so grype --only-fixed finds no remaining fixable vulns.
Reverts the bookworm switch (grype flagged bookworm as EOL).
0 commit comments