Sign inSign up
WordPress

dhi.io/wordpress

WordPress 7.0.6 (php8.4-fpm)

CIS
linux/amd64
debian 13
Tags:

7.0.6-debian-php8.4-fpm, 7.0.6-debian13-php8.4-fpm, 7.0.6-php8.4-fpm

Index digest:

sha256:95ff87e41db81cf47e5871565b7da3b9c0b28ab9fe175a9962b3bfc8a1abf488

Manifest digest:

sha256:8819be69f5660623c55f875a933d672c0d6af820656762ba2fa725f085374658

Size

106.32 MB

Last pushed

11 hours ago

Vulnerabilities

0
0
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/wordpress:7.0.6-debian-php8.4-fpm

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/wordpress:7.0.6-debian-php8.4-fpm --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/wordpress@sha256:691f6aa82abc7f85bdc7d59781dbb99a99b9c5d07ddf83c6b703de0588c64503
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/wordpress@sha256:481a4bedd21bbf1fbbbe8ec1d05472809fda0da9e833a2095158048eea6de9e4
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/wordpress@sha256:e479d9a994ac90beee248851bec20109a55e8187280ec20d56669092de42cecf
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/wordpress@sha256:cd0d1fa73d88dc65bb09bb59dcffdddef334b16f71e532ae7d64b12cb2ff5ca4
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/wordpress@sha256:5e5e6357d094f3c858eb07dc8f891cfacaad4fe34fbde72a55cb93be4befec97
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/wordpress@sha256:ad51d2d4eecf8e5390f3e8535b99fcedea260e77125ca51dadd575e294045312
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/wordpress@sha256:fe1fd911cdd01cb36546cac2c4310d3d4ec07b0326b5a9a8f268863cd657d763
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/wordpress@sha256:d7d1bc80a92fd8b9408de4b0ce1ec0f73926831b861d46ae4959ab0bfbf6ff67
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/wordpress@sha256:d9ae1f84b763da10cd28416d99d29927574f64e528fa390afceb3f8776b14c10
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/wordpress@sha256:eff8ea929a29bee884f7d020284008ef4387c1c38a8eb555b24f318fdc2a9576
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/wordpress@sha256:2e2bb388e1cd025f0419839089b3758455919cf12d74dab30a9c29c4b6db584e
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/wordpress@sha256:7b783b7a4c6453e14263e36029031086ed1c9dc7ecae15363a3d182f9701b4e2
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/wordpress@sha256:67081ae897749b7ea441fdb2b203aed66a87e90732a1aae76e65d80ef61857cc
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/wordpress@sha256:716fbfebd81a0ef68424d82ba5e376492822b38e5720c0922e6f5379946cc318
SPDX SBOMhttps://spdx.dev/Documentdhi.io/wordpress@sha256:c400dc0fc68e25d124fcea813bc2b8fbaff9644cc7fb1a3748af355ad2c38ce7