dhi.io/wordpress
6.9.9-alpine-php8.4-fpm-fips-dev, 6.9.9-alpine3.22-php8.4-fpm-fips-dev
sha256:0be05ec66f6c51ae72754152a4a227e10067648734f6e7deb99db143000f154d
Manifest digest:sha256:837c9d95b148f73476784b196a981c51fe1cf1a5a92009a4d982f7f6bfbf313d
Size
74.43 MB
Last pushed
1 day ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/wordpress:6.9.9-alpine-php8.4-fpm-fips-dev2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/wordpress:6.9.9-alpine-php8.4-fpm-fips-dev --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/wordpress@sha256:7af683847ee25949b9eca4f21f6130ce5db9bdbe335da84f8171d4a39805f977 |
| FIPS compliance v0.1 | https://docker.com/dhi/fips/v0.1 | dhi.io/wordpress@sha256:aa090c781a4a21637ed07367fff7bfd5df736cd27f984b495d12da3797870e73 |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/wordpress@sha256:48d6bb11dcbe1fa2e2fe6b26f82f9accb0d8d1767ee496b1ad62432390dcc3b9 |
| STIG scan v0.1 | https://docker.com/dhi/stig/v0.1 | dhi.io/wordpress@sha256:bea8d197e9361dde0aa040be0a982acbcaedb0788ec3a243082921f5db6ec3bd |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/wordpress@sha256:fc70b3e51539b4e91811e51af91e6a4b953602e564dc3e092b3eebe8b1145bab |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/wordpress@sha256:c00a6bd7be15f527121625cfd58aba037999b22c87b9e17f57ac5383f2b9310e |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/wordpress@sha256:7fd15c91c14a890bf5548982eb696029280814b500b057497803712c93f83eef |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/wordpress@sha256:88c92f806fc45a28460df7682ed4d4a0c19192b49de1ac6f2054d6bce95c1b6e |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/wordpress@sha256:567d63708e24bb14f190c5acff1d9b3dbefead96c20380c6d0e4c5ad57e799d8 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/wordpress@sha256:6af68199732d0234ead2f92192cfd4ce68048599b2ccabb0dd54685d6b0f0764 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/wordpress@sha256:38c3e6ef7e6a8d69391b4b6fd8fc813df6c45908c1c2c08b5b580f9a44acdfd6 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/wordpress@sha256:dbd91056ee0c8585d2244c69b61f40caf4ae7f7523dbafd00dbd45fffb18a820 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/wordpress@sha256:c91926860b4b1b2a7f2253ed2ddc47d7ce89c39d6152c3bd511123dfbdaa8bbd |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/wordpress@sha256:f66f3c49bfd2bba73e6952334b2df26b7e83776d385688fc3e18123fcef89262 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/wordpress@sha256:0dd56a63720653b600b656beb2878b74a079f8bd4420d1369835473d4b7c615d |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/wordpress@sha256:a35b29952b4d1365825fc48b51cd72a228bd80772b332ae4cd8adc707327113a |