UNCLASSIFIED - NO CUI

chore(findings): kubeflow/common/kflogin-ui-v0.5.0

Summary

kubeflow/common/kflogin-ui-v0.5.0 has 4 new findings discovered during continuous monitoring.

id source package
CVE-2021-23424 anchore_cve ansi-html-0.0.7
CVE-2021-22931 twistlock_cve node-12.22.1
CVE-2021-22939 twistlock_cve node-12.22.1
CVE-2021-22940 twistlock_cve node-12.22.1

More information can be found in the failed pipeline located here: https://repo1.dso.mil/dsop/kubeflow/common/kflogin-ui-v0.5.0/-/jobs/6072805

Definition of Done

Justifications:

  • All findings have been justified
  • Justifications have been provided to the container hardening team

Approval Process:

  • Findings Approver has reviewed and approved all justifications
  • Approval request has been sent to Authorizing Official
  • Approval request has been processed by Authorizing Official
Edited by Colton Freeman