-
Notifications
You must be signed in to change notification settings - Fork 100
Open
Description
In file c/t/_/N/A/S///s/x/h///2/5/0/4/0/9/-/M/C/P///c/o/d/e///f/i/n/a/l/-/a/u/t/o///g/e/t/-/s/r/c///s/r/c///2/5/0/6///g/l/a/m/a///k/u/b/e/r/n/e/t/e/s/-/m/c/p/-/s/e/r/v/e/r, you may facing the vulnerablity of dockerfile.security.missing-user-entrypoint.missing-user-entrypoint
The risk is By not specifying a USER, a program in the container may run as 'root'. This is a security hazard. If an attacker can control a process running as root, they may have control over the container. Ensure that the last USER in a Dockerfile is a USER other than 'root'.
Metadata
Metadata
Assignees
Labels
No labels