Skip to content

Critical vulnerabilities on mongo linux amd64 image #760

@jprecuch

Description

@jprecuch

Hi,
It seems your latest image has lot of vulnerabilities. Can you please update it to eliminate these?
{
"image": "library/mongo@sha256:4b5bf3c2bb7516164f6dcb44acce4fdcb428abfe5771a1128304a0f34ab9ff7c",
"severity": "CRITICAL",
"vulnerability_ids": ["CVE-2025-68121","CVE-2026-27143","GO-2026-4337-stdlib","GO-2026-5005-golang.org/x/crypto","GO-2026-5006-golang.org/x/crypto","GO-2026-5017-golang.org/x/crypto","GO-2026-5019-golang.org/x/crypto","GO-2026-5020-golang.org/x/crypto","GO-2026-5021-golang.org/x/crypto","GO-2026-5023-golang.org/x/crypto","GO-2026-5026-golang.org/x/net"]
},

Same is visible in the offiical repository
https://hub.docker.com/layers/library/mongo/7.0.34/images/sha256-f11d03e9d23a4fa6131dd6a840cb5fb6bbfb557861f9c20f4b5a501192ac1584

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type
    No fields configured for issues without a type.

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions