github maxfield-allison/dnsweaver v1.0.4

latest releases: v1.4.3, v1.4.2, v1.4.1...
29 days ago

Security

  • Alpine 3.23 base image: Runtime base image upgraded from Alpine 3.21 to 3.23
    for reduced CVE surface and latest security patches
  • CI security hardening: security:trivy (filesystem scan) and
    security:govulncheck now block pipeline on CRITICAL/HIGH findings instead
    of running in warn-only mode. govulncheck uses a wrapper that allows
    known-unfixed upstream vulnerabilities (docker/docker SDK) while blocking
    on any new findings
  • SECURITY.md: Added responsible vulnerability disclosure policy with
    supported versions, reporting process, and security practices

Changed

  • Alpine base image upgraded from 3.21 to 3.23
  • .trivyignore entries now include explicit review dates

Docker Images

docker pull ghcr.io/maxfield-allison/dnsweaver:v1.0.4
docker pull docker.io/maxamill/dnsweaver:v1.0.4

Don't miss a new dnsweaver release

NewReleases is sending notifications on new releases.