Actions
Activity #1636
openMaster Training Track Day 3 (Trivy)
Start date:
03/18/2026
Due date:
% Done:
100%
Estimated time:
3:30 h
End Date:
03/18/2026
Description
Installed and verified Trivy on the server
Scanned the Flask app's dependencies and found 17 vulnerabilities (1 CRITICAL, 3 HIGH)
Built a Docker image and scanned it — found 50 CRITICAL/HIGH CVEs from the outdated base image
Identified that python:3.9-slim-buster (Debian 10, EOL) was the main source of vulnerabilities
Updated Dockerfile to python:3.12-slim-bookworm and pinned secure package versions
Rebuilt and rescanned — reduced CRITICAL/HIGH from 50 to 4
Created a CI pipeline script to automate scans on every build
No data to display
Actions