Updating the golang:alpine image to alpine3.23 fixes several CVEs:
NAME INSTALLED FIXED IN TYPE VULNERABILITY SEVERITY EPSS % RISK
busybox 1.37.0-r19 1.37.0-r20 apk CVE-2024-58251 Low 4.45 < 0.1
busybox-binsh 1.37.0-r19 1.37.0-r20 apk CVE-2024-58251 Low 4.45 < 0.1
ssl_client 1.37.0-r19 1.37.0-r20 apk CVE-2024-58251 Low 4.45 < 0.1
Updating the
golang:alpineimage toalpine3.23fixes several CVEs: