🛡️ Security Scan Report

Trivy Vulnerability & Secret Scanner
Service: eizen-linkedin-service
Branch: code-refactor-v1
Build: #182
Date: 2026-03-13 11:04:50

1

Critical

3

High

3

Medium

0

Low

0

Secrets

1

Misconfig

🔴 Vulnerabilities (6)
SeverityCVE IDPackageInstalledFixed InDescription
MEDIUM CVE-2025-27516 Jinja2 3.1.5 3.1.6 jinja2: Jinja sandbox breakout through attr filter selecting format method
CRITICAL CVE-2025-43859 h11 0.14.0 0.16.0 h11: h11 accepts some malformed Chunked-Encoding bodies
MEDIUM CVE-2025-67221 orjson 3.10.15 No fix orjson: orjson: Denial of Service due to unbounded recursion with deeply nested JSON documents
HIGH CVE-2026-24486 python-multipart 0.0.20 0.0.22 python-multipart: Python-Multipart: Arbitrary file write via path traversal vulnerability
HIGH CVE-2025-62727 starlette 0.45.3 0.49.1 starlette: Starlette DoS via Range header merging
MEDIUM CVE-2025-54121 starlette 0.45.3 0.47.2 starlette: Starlette denial-of-service
🔑 Secrets (0)
TypeFileLineMatch
✅ No secrets found
⚙️ Misconfigurations (1)
SeverityIDCheckFileMessage
HIGH DS-0029 'apt-get' missing '--no-install-recommends' Dockerfile '--no-install-recommends' flag is missed: 'apt-get update && apt-get install -y ffmpeg && rm
📄 Raw JSON Report (click to expand)