docker.io/temporalio/server:1.31.0
Base OS: alpine 3.23.466 vulnerabilities fixed
Patched Image
ghcr.io/verity-org/temporalio/server:1.31.0
Supply Chain
Full compliance detailsSignedSLSA L3SBOMRekor
Verify this artifact
Cosign signature
cosign verify \ --certificate-identity-regexp "https://github.com/verity-org/verity/.github/workflows/" \ --certificate-oidc-issuer "https://token.actions.githubusercontent.com" \ ghcr.io/verity-org/temporalio/server:1.31.0
Build provenance
gh attestation verify \ oci://ghcr.io/verity-org/temporalio/server:1.31.0 \ --owner verity-org
Before patching
Found 67 vulnerabilities in the original image. 66 fixed by Copa. 1 remaining after patching.
24 HIGH21 MEDIUM20 LOW2 UNKNOWN
Awaiting upstream fix
No fix is available yet for these vulnerabilities. They can be suppressed in your compliance tooling until an upstream fix is released.
- GO-2026-5932UNKNOWN
- Package
- golang.org/x/crypto
- Installed
- v0.52.0
- Fixed
| ID | Package | Installed | Fixed | Severity |
|---|---|---|---|---|
| GO-2026-5932 | golang.org/x/crypto | v0.52.0 | UNKNOWN |
Original image reference
docker.io/temporalio/server:1.31.0