Comments (1)
Both of those CVEs are from the debian:bullseye-slim
base image as essential linux packages, rather than from Neo4j. If debian fixes their image it will automatically be updated, by docker, into our latest images.
There is nothing we can do about them in Neo4j because they are not coming from our part of the image.
Also, for what it's worth, the security scan on docker hub for neo4j:5.19.0-enterprise
does not report any critical severity CVEs in neo4j:5.19.0-enterprise
or debian:bullseye-slim
:
https://hub.docker.com/layers/library/neo4j/enterprise-bullseye/images/sha256-8c1e19ad0b1e883111bb89141d19fecfc6e281bca8973c46251e430cab68840b?context=explore
Since you have an enterprise license you can always ask Neo4j support these and any future questions about CVEs. They are usually much faster to respond.
from neo4j.
Related Issues (20)
- Query causes Stackoverflow HOT 1
- Unexpected SyntaxError in `toBoolean โ all` HOT 1
- `genai.vector.encode` doesn't allow for changing OpenAI API endpoints HOT 1
- Result rows do not work as expected. HOT 6
- The apoc.cypher.runSchemaFile() never finishes execution
- Node matched too early in `UNION` on Enterprise
- Node deleted failed about path of unknown length HOT 1
- One possible performance issue HOT 3
- Wrongful execution of `ELSE` branch in `CASE` expression HOT 2
- UnknownError in a DuplicatedSlotKey HOT 1
- One possible performance issue HOT 3
- toInteger and toFloat can't handle strings with common thousands delimiters HOT 2
- Neo.ClientError.Statement.RuntimeUnsupportedError HOT 6
- BLOCK storage format between AuraDB and Community editions HOT 8
- Allow lists with arbitrary strings in CVS import by escaping array delimiter HOT 5
- Neo4j 5.19.0 was released April 12th, 2024 but none of the source is available on this repo. Is it still under GPL? HOT 1
- Neo4j cypher ๏ผquery directed relationships HOT 2
- Importing csv quote issues even with "" escaping HOT 1
- Version 5.19.0 and 5.20.0 releases HOT 3
Recommend Projects
-
React
A declarative, efficient, and flexible JavaScript library for building user interfaces.
-
Vue.js
๐ Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.
-
Typescript
TypeScript is a superset of JavaScript that compiles to clean JavaScript output.
-
TensorFlow
An Open Source Machine Learning Framework for Everyone
-
Django
The Web framework for perfectionists with deadlines.
-
Laravel
A PHP framework for web artisans
-
D3
Bring data to life with SVG, Canvas and HTML. ๐๐๐
-
Recommend Topics
-
javascript
JavaScript (JS) is a lightweight interpreted programming language with first-class functions.
-
web
Some thing interesting about web. New door for the world.
-
server
A server is a program made to process requests and deliver data to clients.
-
Machine learning
Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.
-
Visualization
Some thing interesting about visualization, use data art
-
Game
Some thing interesting about game, make everyone happy.
Recommend Org
-
Facebook
We are working to build community through open source technology. NB: members must have two-factor auth.
-
Microsoft
Open source projects and samples from Microsoft.
-
Google
Google โค๏ธ Open Source for everyone.
-
Alibaba
Alibaba Open Source for everyone
-
D3
Data-Driven Documents codes.
-
Tencent
China tencent open source team.
from neo4j.