mirror of
https://github.com/suitenumerique/meet.git
synced 2026-10-03 20:40:46 +00:00
ceb458b87a
The nginx-unprivileged:1.30.4-alpine3.24 base image ships pcre2 10.48-r0, which is affected by CVE-2026-103111 (HIGH, out-of-bounds write via crafted regular expression). No newer base image tag is available yet. Upgrade pcre2 from the Alpine v3.24 repository with a minimum version constraint (>=10.49-r0) so the build fails instead of silently shipping a vulnerable version if the fix is unavailable.