Skip to content

Commit 0fccb83

Browse files
committed
Use a pinned hash for the base Docker image
1 parent b888850 commit 0fccb83

1 file changed

Lines changed: 2 additions & 2 deletions

File tree

Dockerfile

Lines changed: 2 additions & 2 deletions
Original file line numberDiff line numberDiff line change
@@ -1,4 +1,4 @@
1-
FROM node:lts-alpine as builder
1+
FROM node:lts-alpine3.23@sha256:d1b3b4da11eefd5941e7f0b9cf17783fc99d9c6fc34884a665f40a06dbdfc94f AS builder
22

33
# Install SSL ca certificates
44
RUN apk update && apk add ca-certificates
@@ -17,7 +17,7 @@ RUN yarn install
1717
RUN yarn install --production --modules-folder './production_node_modules'
1818

1919
# Build a minimal and secured container
20-
FROM node:lts-alpine
20+
FROM node:lts-alpine3.23@sha256:d1b3b4da11eefd5941e7f0b9cf17783fc99d9c6fc34884a665f40a06dbdfc94f
2121
COPY --from=builder /etc/ssl/certs/ca-certificates.crt /etc/ssl/certs/
2222
COPY --from=builder /etc/passwd /etc/passwd
2323
COPY --from=builder /javascript-analyzer/package.json /opt/analyzer/package.json

0 commit comments

Comments
 (0)