dhi.io/wordpress
7.0.7-debian-php8.4-fpm, 7.0.7-debian13-php8.4-fpm, 7.0.7-php8.4-fpm
sha256:5b9073bf2f5281974211a7df857038c64e0c7f2b8edabdccadc64b7e574ffc07
Manifest digest:sha256:666b1af4fbc936579a52c1558a1c0f4d4e792a0c840ce45d36e107f7967be71a
Size
106.33 MB
Last pushed
6 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/wordpress:7.0.7-debian-php8.4-fpm2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/wordpress:7.0.7-debian-php8.4-fpm --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/wordpress@sha256:7d4d790b62a34a62498e3d8d49376782fd8145b1ca08f0c8ca384af315670bba |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/wordpress@sha256:0f95481e653e2c77aca11e05db7302b0b944432f51e272b11e01ba865f9a60a0 |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/wordpress@sha256:299d7cbbf64f7955af29ccdf8e1797c0e4c14228d5c25012c8b4417e3e187ffd |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/wordpress@sha256:05ccf2dfe64787508b65692d5553b1e311533b4f6abfd9b3204a060cddf42e04 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/wordpress@sha256:4dc50434b39138d9b4450b009ab1229b42dfe29ebc1619df14a80baf9fa217ff |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/wordpress@sha256:e6875b77761f661be7703bdd5a814f42107ecfe0d29c08493fadf5a8f91931c0 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/wordpress@sha256:8487d9747b1ec1734a469371546606d1df8c4f9ccc6d5caa52569d1c7e7db877 |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/wordpress@sha256:664685e8bcd25e318044d0479bea78c3ee3a60d4e879a5b7a249db4bda3a2a23 |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/wordpress@sha256:6502499fd468cfd41db5f8a609bf9f0df1225fe60226857dac60048e004cd3ee |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/wordpress@sha256:d34c24c505f21b08153d3ca48a744225a7ddae978b58a3edb12886d6f008206b |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/wordpress@sha256:62ab363f16280bdcb5fd1403f94c0aaafba828879486e8ab2e7aecc4dc6a459e |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/wordpress@sha256:326c0b7a9317fa2daa9bce38edb1e817e95c0cd013b8f20f0eaecede7952a03d |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/wordpress@sha256:3a88f687ef4633839b2acdf5affba7ba36a9049a32c9388af873b018147d61ec |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/wordpress@sha256:f706df0fa6237e3a0c937794cbc58d098db6b9e03a3dce386a3df98e0aec704f |