Project

General

Profile

Actions

Activity #1636

open

Master Training Track Day 3 (Trivy)

Added by Bhaveeni Narottam 6 days ago.

Status:
New
Priority:
Normal
Start date:
03/18/2026
Due date:
% Done:

100%

Estimated time:
3:30 h
End Date:
03/18/2026

Description

Installed and verified Trivy on the server
Scanned the Flask app's dependencies and found 17 vulnerabilities (1 CRITICAL, 3 HIGH)
Built a Docker image and scanned it — found 50 CRITICAL/HIGH CVEs from the outdated base image
Identified that python:3.9-slim-buster (Debian 10, EOL) was the main source of vulnerabilities
Updated Dockerfile to python:3.12-slim-bookworm and pinned secure package versions
Rebuilt and rescanned — reduced CRITICAL/HIGH from 50 to 4
Created a CI pipeline script to automate scans on every build

No data to display

Actions

Also available in: Atom PDF