dhi.io/wordpress
7.0.6-debian-php8.5-fpm, 7.0.6-debian13-php8.5-fpm, 7.0.6-php8.5-fpm
sha256:46ef83eb58150e95e19bf44bd1ccbf3425aac8a1e885238f62ffbdd1773e7f9d
Manifest digest:sha256:7d995040361e5ff35b4610c0ad9ccf2c7991bf9d73115f61f3ed2d455e9e7b78
Size
107.43 MB
Last pushed
4 hours ago
Vulnerabilities
Support
Active
Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.
Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.
1. List all available attestations
docker scout attest list dhi.io/wordpress:7.0.6-debian-php8.5-fpm2. Verify a specific attestation
For example, to verify the SLSA provenance attestation:
docker scout attest get dhi.io/wordpress:7.0.6-debian-php8.5-fpm --predicate-type https://slsa.dev/provenance/v0.2 --verifyAll attestations are signed and can be verified with cosign.
| Predicate | Predicate type | Reference |
|---|---|---|
| CycloneDX SBOM v1.6 | https://cyclonedx.org/bom/v1.6 | dhi.io/wordpress@sha256:20d45d45afb4f99b0d7e3859058a7f0c7fb48d27a548d0f53c4f63ae78882aa7 |
| Changelog v0.1 | https://docker.com/dhi/changelog/v0.1 | dhi.io/wordpress@sha256:a2ba9bfda6c0432ecfa234ace1f0e680473df0513d7c143957f338f83e7682ed |
| DHI Image Sources v0.1 | https://docker.com/dhi/source/v0.1 | dhi.io/wordpress@sha256:2e418fecd97d2892d33452c3fc08832c2bbdc4f4fb7434742023fe1f657faf6e |
| CVEs v0.2 | https://in-toto.io/attestation/vulns/v0.2 | dhi.io/wordpress@sha256:8d6ccd9103635857cfae0ed8d64666606fefd20ec73025d91c6cbea2dfd90f93 |
| VEX v0.2.0 | https://openvex.dev/ns/v0.2.0 | dhi.io/wordpress@sha256:d2e1448cccb7596969f106fb5128a39c798ddfea5da5930b888c18ce3569a3f2 |
| Scout provenance v0.1 | https://scout.docker.com/provenance/v0.1 | dhi.io/wordpress@sha256:7ba83b215f1261fb9e483ec04921ad63eb7017e2242cb5667c150057b6db3821 |
| Scout SBOM v0.1 | https://scout.docker.com/sbom/v0.1 | dhi.io/wordpress@sha256:ac50ebdab5ce6913d15664e6e3925895aaff9b3b409caac43929cfaa1df7d524 |
| Secrets scan v0.1 | https://scout.docker.com/secrets/v0.1 | dhi.io/wordpress@sha256:0c31fb77c5b7255ccb0297568f71311aad2fc1d0f4faba9ff9bc770df5884bed |
| Tests v0.1 | https://scout.docker.com/tests/v0.1 | dhi.io/wordpress@sha256:e1e102c0a56c157b808bc3b46ab577fa7c5a217ede2c45e178e0072a9d47dacc |
| Virus scan v0.1 | https://scout.docker.com/virus/v0.1 | dhi.io/wordpress@sha256:0b09f74524ff55ac669739d230d04a5277fb037a492c094d814a26665e293618 |
| CVEs v0.1 | https://scout.docker.com/vulnerabilities/v0.1 | dhi.io/wordpress@sha256:7e00f75836dd8b7afa3c5415c865a7a3900a4f3eeb6762d9fdefa8ef06563df7 |
| SLSA provenance v0.2 | https://slsa.dev/provenance/v0.2 | dhi.io/wordpress@sha256:02425ae21c9dcc732f139f9dbf6d186eba17e6a5df2707b96ac9432a853845ce |
| SLSA provenance v1 | https://slsa.dev/provenance/v1 | dhi.io/wordpress@sha256:b0269d5a9ea08166f5f8ceb6133cb95a75af1324be7c869ae2ec9575d8b79118 |
| SLSA verification summary v1 | https://slsa.dev/verification_summary/v1 | dhi.io/wordpress@sha256:3dc1067e670168ffeaf0eaf3796c9d4e90f3eba75f836e5ec25d3ebda4797c9f |
| SPDX SBOM | https://spdx.dev/Document | dhi.io/wordpress@sha256:c3ecc3c20f5d099ff98e563e9f3aeff2f9059d6fab08692b64cb869c280cd025 |