UNCLASSIFIED - NO CUI

Information on VULNDB-93555

Our Jenkins-Agent container image has the following Vulnerabilities in the Anchore Compliance Results

{{ac85209a3eb981e97f74088b4b335c954054926eeabafa678b51db299f552835 nexus-docker.52.61.140.4.nip.io/solutions-delivery-platform/jenkins-agent/jenkins-agent:3.9 VULNDB-93555+swarm-client-3.9.jar:commons-codec vulnerabilities package MEDIUM Vulnerability found in non-os package type (java) - /opt/jenkins-agent/bin/swarm-client-3.9.jar:commons-codec (VULNDB-93555 - http://anchore-anchore-engine-api:8228/v1/query/vulnerabilities?id=VULNDB-93555) stop 4f3bdc23-175b-4582-8c7d-3a7d8fa32a12 NF }}

Since the VULNDB information seems not be publicly available, would you be able to give some details on VULNDB-93555 and what is required to be done to fix it?

Thanks

Edited by Karpagam Balan
To upload designs, you'll need to enable LFS and have an admin enable hashed storage. More information