GitHub user hpvd added a comment to the discussion: Build distroless package 
for better security, smaller size, speed and more

for example regarding security, see sources of vulnerabilities in pulsars helm 
chart.
Even an update to latest version of everything would not solve the main 
problem, that included distros always add a huge part of vulnerabilities
=> **included distros simply add more code, with more chances for 
vulnerabilities to be introduced.**

![2023-05-08_10h27_11](https://user-images.githubusercontent.com/5681880/236776051-4bc5b625-313d-4794-a745-396ec6acffc2.png)

see
https://artifacthub.io/packages/helm/apache/pulsar?modal=security-report&section=vulnerabilities

GitHub link: 
https://github.com/apache/pulsar/discussions/20253#discussioncomment-5835696

----
This is an automatically sent email for commits@pulsar.apache.org.
To unsubscribe, please send an email to: commits-unsubscr...@pulsar.apache.org

Reply via email to