A security scan (e.g., Prisma Cloud, Blackduck) of the DX APM Universal Monitoring Agent (APMIA) docker image version 26.5.x reports multiple High and Critical vulnerabilities.
Affected Packages and CVEs
Commonly flagged vulnerabilities include, but are not limited to:
These vulnerabilities reside in third-party libraries bundled within the APMIA 26.5.x image. While APMIA itself may not use the vulnerable features of these libraries, security scanners flag the presence of the library versions in the container filesystem.
Upgrade to the latest DX APM SaaS deliverable image:
Customers are encouraged to stay on the most recent SaaS release to ensure they have the latest security patches.