Sign inSign up
WordPress

dhi.io/wordpress

WordPress 7.1.2 (php8.5-fpm)

CIS
linux/amd64
debian 13
Tags:

7.1.2-debian-php8.5-fpm, 7.1.2-debian13-php8.5-fpm, 7.1.2-php8.5-fpm

Index digest:

sha256:06dd9d8a90aa60c07a72d57ba32117ee3298a3ec0eec2c609db87ac322390688

Manifest digest:

sha256:bc8abb11a38bd357dccb0a400a546c437f63a4640baa387c08bb889e224ffde9

Size

111.74 MB

Last pushed

20 hours ago

Vulnerabilities

0
0
0
3
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.⁠

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub⁠ and also archived at https://github.com/docker-hardened-images/keyring⁠.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/wordpress:7.1.2-debian-php8.5-fpm

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/wordpress:7.1.2-debian-php8.5-fpm --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.⁠

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/wordpress@sha256:708b20cb5d879709688c66819c97d52f80a5d4b7098d16c73465e2e9ae081acd
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/wordpress@sha256:fb3c89a9a975857b4ab63c4657035ed2616376c28b78d3970b339224bbd2e362
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/wordpress@sha256:c6b77f19946f8799e34c21a6e20294fe1a9f587edfa9451c54378bd3a1a936fe
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/wordpress@sha256:8b5384add3f037e037a06e52cc09b51405c81fb77ef95082ce3689a6a3c8c74f
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/wordpress@sha256:43c4801cef2e6c99d2aed0bca763479539e9ad3dddfafefe0ba4b510b80fcb6e
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/wordpress@sha256:08eecf04f929d3884a4191a9ea8a8a637cad6c01fe82789db2900ace1fe0d331
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/wordpress@sha256:8f5be4f377fa707f5378a78e8e3b6f662dd678e0e92c1ee23d054b22677f5af1
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/wordpress@sha256:2c19592617e98c54e386b83b22da588137b92263497c910620947d5a5ef095af
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/wordpress@sha256:8cb324020d24aece99de2231335aef3b66054b36847c10bfd1acc1db636cf5b7
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/wordpress@sha256:08a25fd754cf7ec642141a8de8b8baf1d390160837aa623bebf94e8a7d9648fa
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/wordpress@sha256:dec7dfc7d79b2017c9220e0b739d692b828eb046cda791e223d6be7a5aea47e4
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/wordpress@sha256:2a27e0a1e9412feede2021aea50599f7b3769b419065dc178c620268a2da6c21
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/wordpress@sha256:4a167fe80401ae5b99fc7fe3b3b6b1da2325bce5f0f5c9688e00a49bef7f087e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/wordpress@sha256:5100cdb8be28edb328ad1bd8fc408172905a5ff37253e86b9c36b7b0ed8d4a8f
SPDX SBOMhttps://spdx.dev/Documentdhi.io/wordpress@sha256:59f571a3fe258e41f7a9b80025c6b009635d9dc17a5d1e34b8e3cfbd915414dc