Skip to content

MLE-26157 remove security vulnerabilities list from README#418

Merged
vitalykorolev merged 2 commits intomarklogic:developfrom
vitalykorolev:MLE-26157_update-vulnerability-list
Feb 26, 2026
Merged

MLE-26157 remove security vulnerabilities list from README#418
vitalykorolev merged 2 commits intomarklogic:developfrom
vitalykorolev:MLE-26157_update-vulnerability-list

Conversation

@vitalykorolev
Copy link
Collaborator

@vitalykorolev vitalykorolev commented Feb 25, 2026

Description

The team decided to remove security vulnerabilities from the known issues section to reduce maintenance overhead and because we're going to enable Docker Scout in Docker Hub. Also removing the notice about issue in OpenSCAP as it's now fixed.

Checklist:

  • Owner:
  • JIRA_ID as part of branch/PR name

  • Rebase the branch with upstream

  • Squashed all commits into a single commit

  • Added Tests

  • Reviewer:
  • Reviewed Tests

  • Added to Release Wiki/Jira

Copy link
Contributor

Copilot AI left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Pull request overview

Updates the README’s “Known Issues and Limitations” section to reflect the latest reported security vulnerabilities affecting the Red Hat UBI base images referenced by this project.

Changes:

  • Expanded the UBI/UBI9 vulnerability package list and refreshed CVE entries.
  • Updated wording to include UBI9 images in the stated scope.

💡 Add Copilot custom instructions for smarter, more guided reviews. Learn how to get started.

@vitalykorolev
Copy link
Collaborator Author

There is currently a discussion with security team on whether to keep this list or not.

@vitalykorolev vitalykorolev changed the title MLE-26157 update security vulnerabilities list based on the latest reports MLE-26157 remove security vulnerabilities list from README Feb 26, 2026
@vitalykorolev vitalykorolev merged commit 54bb50a into marklogic:develop Feb 26, 2026
6 checks passed
@vitalykorolev vitalykorolev deleted the MLE-26157_update-vulnerability-list branch February 26, 2026 22:24
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants