Box upgrade doesn't appear to be using the proxy settings

Sounds good. I will see what I can leverage. I was heavily banking on the majority of vulns being resolved by you guys and saw that you have made security fixes in the past. Seeing some of the old CVEs that are popping I wanted to make sure we just had latest update commands backed into our process so these vulns could be mitigated. This is a process we do for some old debian or ubuntu images that are out dated and wasn’t sure if your images could be resolved in the same manner.

Im going to try lucee-light and see. I am just following base deployment instructions for a cold fusion application that we are deploying in our environment. So most of this is my first stab at the cold fusion tooling.

Well, welcome to the CF world :slight_smile:

I think

  • updating to the latest docker image
  • using Lucee light and only adding back in the extensions you need

will go a LONG way in getting your CVE scan counts down. That said, we know a lot about this, it’s sort of our jam :slight_smile: Ortus offers paid consulting services and we’d be happy to help you and your org if you would like further assistance or review of your set ups.