Sign inSign up
WordPress

dhi.io/wordpress

WordPress 7.0.6 (php8.3-fpm, fips)

CIS
FIPS
STIG
linux/amd64
debian 13
Tags:

7.0.6-debian-php8.3-fpm-fips, 7.0.6-debian13-php8.3-fpm-fips, 7.0.6-php8.3-fpm-fips

Index digest:

sha256:27894f8a2a529cc1a7cc6f84bd5ee5e330b7c34c4bfbe1698063ebe35301530e

Manifest digest:

sha256:6a2cdbd629e5d6860f156b7b960ea474a4b055aa5cf9aa5919b31aba068b9f79

Size

114.37 MB

Last pushed

1 day ago

Vulnerabilities

0
1
0
10
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/wordpress:7.0.6-debian-php8.3-fpm-fips

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/wordpress:7.0.6-debian-php8.3-fpm-fips --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/wordpress@sha256:fbdde8b39c4d952270a6fb13bda73e41824e084af102faff4abd5d4b65d55ff7
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/wordpress@sha256:6b77c12e65749ddb5aa2883478f07e29494a809822edfcc7192fc5fbd2a43a62
FIPS compliance v0.1https://docker.com/dhi/fips/v0.1dhi.io/wordpress@sha256:d29b8beff6a540c4e18db615191db6a887c7d3c11a72ead755e7547ec0729577
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/wordpress@sha256:2d9496fe5cba16f1fc9aeec8d0160e6d161294c466f840d45db06a09f7e232e6
STIG scan v0.1https://docker.com/dhi/stig/v0.1dhi.io/wordpress@sha256:cddc4a5599560e637c2dca95fee6af57407a37063e3d739a2ffbeadd4f26615e
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/wordpress@sha256:35101ba3de898589a0aac89555e650e76b674ecadf8884e41bc70da2028eb1ef
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/wordpress@sha256:4d2982a72b1589ca8ac2559c1f6ee702356b9ac6263924c4f2a1e24d40fe4b64
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/wordpress@sha256:bb093bf9c2c601b987fbf077eff566c431279c8ca65ba3355dcb4bfdb9677e3c
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/wordpress@sha256:144653b1630a30e1e1365a4e7ae1d39dfc7b1e29bd745884b82c641621ef96d1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/wordpress@sha256:7375fcbfbbf4e3d7dff14761b2875c77ae15cababaa35ed6ff95ac3534332aac
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/wordpress@sha256:9787dbb30ac962b9c14a24c1ffad0bccfb6faea4d110f34eb3dc747d2cc61ac2
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/wordpress@sha256:7a0935f6aad390aba233d3f94c3b9235b5577891df91a4230e221c7ce9dbbeb9
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/wordpress@sha256:ad4bdc2adbec3287d9f584f6db186ca7d5d7846882c1c733f00b8cd85df93025
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/wordpress@sha256:639839e727579ec4639ea7c3ed46811b87bb5fee3235e9656b4be0632533ede3
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/wordpress@sha256:1743c31ec126607a31e021c113838dc7412f4a97620fc89cb16ad61985572dcc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/wordpress@sha256:b9110ec09e733edf3121139e45fe7aab89011b438b99b5bb19a2ee83ed7e5739
SPDX SBOMhttps://spdx.dev/Documentdhi.io/wordpress@sha256:482e1b9566b6de71c7621ed824df0d6f490b3ab2ae74c6f11179fe4a7bfc4863