Skip to main content

quay.io/argoproj/argo-rollouts:v1.8.3

Base OS: debian 11.1080 vulnerabilities fixed
Patched Image
ghcr.io/verity-org/argoproj/argo-rollouts:v1.8.3
SignedSLSA L3SBOMRekor
Verify this artifact
Cosign signature
cosign verify \
  --certificate-identity-regexp "https://github.com/verity-org/verity/.github/workflows/" \
  --certificate-oidc-issuer "https://token.actions.githubusercontent.com" \
  ghcr.io/verity-org/argoproj/argo-rollouts:v1.8.3
Build provenance
gh attestation verify \
  oci://ghcr.io/verity-org/argoproj/argo-rollouts:v1.8.3 \
  --owner verity-org

Before patching

Found 96 vulnerabilities in the original image. 80 fixed by Copa. 16 remaining after patching.

2 CRITICAL38 HIGH44 MEDIUM5 LOW7 UNKNOWN

Fix available — pending patch

These vulnerabilities have upstream fixes but could not be automatically patched. Manual remediation may be required.

Awaiting upstream fix

No fix is available yet for these vulnerabilities. They can be suppressed in your compliance tooling until an upstream fix is released.

Original image reference
quay.io/argoproj/argo-rollouts:v1.8.3