From 3b4a679020a9401363b26dea660c1c2640c98efd Mon Sep 17 00:00:00 2001 From: Caroline6312 Date: Wed, 3 Dec 2025 01:08:22 -0800 Subject: [PATCH 1/3] Temporarily Suppress libpng CVE-2025-64720 and CVE-2025-65018 --- .trivyignore | 8 ++++++-- 1 file changed, 6 insertions(+), 2 deletions(-) diff --git a/.trivyignore b/.trivyignore index 8e88307..3a1f44f 100644 --- a/.trivyignore +++ b/.trivyignore @@ -5,5 +5,9 @@ # UID2-6097 CVE-2025-59375 exp:2025-12-15 -# UID2-6128 -CVE-2025-55163 exp:2025-10-30 +# UID2-6340 +CVE-2025-64720 exp:2025-12-16 + +# UID2-6340 +CVE-2025-65018 exp:2025-12-16 + From 274182619f9741f1c098c0b97ad7d7d7df8b4adf Mon Sep 17 00:00:00 2001 From: Caroline6312 Date: Wed, 3 Dec 2025 11:18:22 -0800 Subject: [PATCH 2/3] Upgrade uid2-shared --- pom.xml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/pom.xml b/pom.xml index cfec532..a48d03a 100644 --- a/pom.xml +++ b/pom.xml @@ -24,7 +24,7 @@ com.uid2.core.vertx.CoreVerticle io.vertx.core.Launcher - 11.1.13 + 11.1.91 ${project.version} From 3dc1ecd9cf6b8e23e92b40a2f2eacea933c02248 Mon Sep 17 00:00:00 2001 From: Caroline6312 Date: Thu, 4 Dec 2025 14:03:07 -0800 Subject: [PATCH 3/3] Extend date --- .trivyignore | 4 ++-- 1 file changed, 2 insertions(+), 2 deletions(-) diff --git a/.trivyignore b/.trivyignore index 3a1f44f..82ae41f 100644 --- a/.trivyignore +++ b/.trivyignore @@ -6,8 +6,8 @@ CVE-2025-59375 exp:2025-12-15 # UID2-6340 -CVE-2025-64720 exp:2025-12-16 +CVE-2025-64720 exp:2026-06-05 # UID2-6340 -CVE-2025-65018 exp:2025-12-16 +CVE-2025-65018 exp:2026-06-05