Sign inSign up
Flyway

dhi.io/flyway

Flyway 11.20.x

CIS
linux/amd64
debian 13
Tags:

11-jre23, 11-jre23-debian, 11-jre23-debian13, 11.20-jre23, 11.20-jre23-debian, 11.20-jre23-debian13, 11.20.3-jre23, 11.20.3-jre23-debian, 11.20.3-jre23-debian13

Index digest:

sha256:cab1f5a92ad325a43802cf8427ae1b23fb93032e2f7452ee7090e6c433f98a10

Manifest digest:

sha256:d327e4334c3b8f8a53fc2663ed3aefaa0dbbf3d797f372ef13bfe25eff6a401b

Size

293.34 MB

Last pushed

22 hours ago

Vulnerabilities

0
12
11
8
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/flyway:11-jre23

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/flyway:11-jre23 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/flyway@sha256:992affd3514606d62e7457370df8f75e94f0154ef9feeb58cd9b1c2497ba12cc
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/flyway@sha256:0e134d03a5ad2d7d3a03cd8a708dbd17bd0d68e328055f7ba1bac0eced9e191c
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/flyway@sha256:b034dc77966b34505946d6878750d2f0128909cbd07cada36b2b9bf858ddcb7b
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/flyway@sha256:beccc4b16041564077a3611cd86d771fd7b2f0485e44d2f80f00149e4b0829cc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/flyway@sha256:d0f039a7496d75dc23c3a6e5a9420a61735d5301f96bb62f2ca17836f66cd473
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/flyway@sha256:235995900f8686ba943e1cff80cb0cee17d31d215f6f1934b191ebb2cdfb17ad
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/flyway@sha256:8af70b7c365ec99fae8e8e8618e4bbb716f892282ef6a04781846226cc017b7e
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/flyway@sha256:2ab2755d07a38733922da32519c1b3562122e04b9b65e0926e5231d041d37cb6
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/flyway@sha256:5664618c9de21159d87bd00d8e56302e4bdc2e54b3017daddd27f36dc247ca4e
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/flyway@sha256:9d62d2c3f9d2d3cc69fd805be633dbc4a5f84275a36a3ba3be0b64a7aff38ffa
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/flyway@sha256:985543deede28fad711e1bd91b2593ea8339f924f0351025b0f07befb3363d11
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/flyway@sha256:e142393d5930b5c39c4034b381f74d54b7a9fd108e41779f278c06a8e8704598
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/flyway@sha256:8692fc6c783050641aa74e289b0296dd1210d987867ed9a4e7a3869ef2c02b91
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/flyway@sha256:8bfbb6d70287f9cb6f345c4379970302f165b0254c93a57add2241e5ecf09521
SPDX SBOMhttps://spdx.dev/Documentdhi.io/flyway@sha256:ec8c5cb676bec5e33dd37cdd0ff47430754873d8c030b572b6be5508dce09e1c