Paul Nothaft
cbecb9323c
fix(security): resolve Docker image CVEs for code scanning alerts
- Upgrade nginx base from 1.27-alpine to 1.28-alpine (Alpine 3.23, OpenSSL 3.5.5)
- Upgrade npm to latest in backend production stage to fix tar, minimatch, brace-expansion CVEs
- Add brace-expansion and minimatch overrides for app-level transitive deps
- Remove incompatible body-parser v2 override (breaks Express 4 JSON parsing)
- Remove npm upgrade from builder stages (npm 11 breaks npm ci with existing lockfile)
2026-03-02 23:06:15 +01:00
..
2025-10-02 23:39:17 +02:00
2025-07-24 16:57:07 +02:00
2026-02-22 22:34:44 +01:00
2026-02-22 22:34:44 +01:00
2026-03-01 14:36:34 +01:00
2025-07-24 16:57:07 +02:00
2026-01-17 15:48:24 +01:00
2025-07-24 16:57:07 +02:00
2025-07-24 16:57:07 +02:00
2025-10-13 21:11:38 +02:00
2026-03-02 23:06:15 +01:00
2025-11-25 20:35:59 +00:00
2025-07-24 16:57:07 +02:00
2025-07-24 16:57:07 +02:00
2025-07-24 16:57:07 +02:00
2025-09-19 16:39:18 +02:00
2025-09-21 22:03:07 +02:00
2026-03-02 23:06:15 +01:00
2026-03-02 23:06:15 +01:00
2026-02-16 22:33:20 +01:00
2025-09-05 15:01:16 +02:00
2026-01-07 22:33:40 +01:00