Skip to content

fix(docker): refresh cached Alpine security updates - #50

Merged
wiznick79 merged 1 commit into
mainfrom
codex/refresh-alpine-packages
Sep 25, 2026
Merged

wiznick79 merged 1 commit into
mainfrom
codex/refresh-alpine-packages

Conversation

@wiznick79

Copy link
Copy Markdown
Owner

The image workflow reused a cached apk upgrade layer, leaving the service images on Alpine libexpat 2.8.4-r0 after CVE-2026-93990 was published. This passes a per-run cache key to the shared service Dockerfile so apk upgrade runs with current repositories on each CI image build. This should refresh the four failing images and allow Trivy to verify the patched package.

@wiznick79
wiznick79 merged commit 90f60b6 into main Sep 25, 2026
17 checks passed
@wiznick79
wiznick79 deleted the codex/refresh-alpine-packages branch September 25, 2026 19:20
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant