Sign inSign up
Neo4j

dhi.io/neo4j

Neo4j 5.x

CIS
linux/amd64
debian 13
Tags:

5, 5-debian, 5-debian13, 5.26, 5.26-debian, 5.26-debian13, 5.26.30, 5.26.30-debian, 5.26.30-debian13

Index digest:

sha256:7f3745372db8dc177e0ccfd614eb59c61fd76efb490d7bbaaac289d4d2118c41

Manifest digest:

sha256:7e59ea5419157b732668cd6da03185e550d0016b318f93567f017f231ca9f53b

Size

163.23 MB

Last pushed

6 hours ago

Vulnerabilities

0
0
0
0
0

Support

Active

Overview

Docker Hardened Images include comprehensive security attestations that verify the image's build process, contents, and security posture. This image is built using SLSA Build Level 3 practices. Additionally, this image includes a source attestation that links to a corresponding source image containing all build materials. The following attestations are available and can be verified using cosign.

Docker's DHI public key is available at https://registry.scout.docker.com/keyring/dhi/latest.pub and also archived at https://github.com/docker-hardened-images/keyring.

How to verify attestations

1. List all available attestations

docker scout attest list dhi.io/neo4j:5

2. Verify a specific attestation

For example, to verify the SLSA provenance attestation:

docker scout attest get dhi.io/neo4j:5 --predicate-type https://slsa.dev/provenance/v0.2 --verify

Attestations

All attestations are signed and can be verified with cosign.

PredicatePredicate typeReference
CycloneDX SBOM v1.6https://cyclonedx.org/bom/v1.6dhi.io/neo4j@sha256:76e9a1a7c643621c9784d8dcce7b3f804a1a352a4d7bf341a6cae2b6456c32b2
Changelog v0.1https://docker.com/dhi/changelog/v0.1dhi.io/neo4j@sha256:2591d00d26acf46706cea014f03f6af68565d80c8a2261fc828892d1f4a5a92e
DHI Image Sources v0.1https://docker.com/dhi/source/v0.1dhi.io/neo4j@sha256:f4a228ca9de019947439b5c15246c60bb2ff7e5ce031a0f61e39deb8594c179a
CVEs v0.2https://in-toto.io/attestation/vulns/v0.2dhi.io/neo4j@sha256:9bd27014365c0055c6ca6cedee4fa5e64d415d4f5bd7753450e68f97f1ca2bfc
VEX v0.2.0https://openvex.dev/ns/v0.2.0dhi.io/neo4j@sha256:babe1c12480b5e84bf4d5f8de2dc2d02d09f4d3808b512ddb83148c592e72344
Scout provenance v0.1https://scout.docker.com/provenance/v0.1dhi.io/neo4j@sha256:75d922343ff10ddb1545caadf213ff48e26e395ffdc31c2ab95eb5d4e35368d9
Scout SBOM v0.1https://scout.docker.com/sbom/v0.1dhi.io/neo4j@sha256:5f88ef2b1172f03a2708e8099b078147cd09bfdc60af34fad9873655bc884d31
Secrets scan v0.1https://scout.docker.com/secrets/v0.1dhi.io/neo4j@sha256:5200a3a0292c13779eac542c72dacaa1a2c1282353a3903c35a7a8f75e942e55
Tests v0.1https://scout.docker.com/tests/v0.1dhi.io/neo4j@sha256:a5b04bb99751ea0895b335e7a12c309f5e367b1a1446a2f9c7b59a2628232263
Virus scan v0.1https://scout.docker.com/virus/v0.1dhi.io/neo4j@sha256:8cfd6d1237bf51a06e564425b12cfbf230a7e69efbc7adae3607d82a8872a092
CVEs v0.1https://scout.docker.com/vulnerabilities/v0.1dhi.io/neo4j@sha256:b3ae39980891db59532ce527972a7625bc697aadb1f8e08e709582bfbb2fd788
SLSA provenance v0.2https://slsa.dev/provenance/v0.2dhi.io/neo4j@sha256:e17c137709019d8064455923594349e4949c8eaa123efdcd49940c0d474ff547
SLSA provenance v1https://slsa.dev/provenance/v1dhi.io/neo4j@sha256:9ca3561538e38da35a65698eb275f50fb6a7c01cf0d8f5d73ba8a6e3ffb63a2e
SLSA verification summary v1https://slsa.dev/verification_summary/v1dhi.io/neo4j@sha256:2e1284c0fa2d27bf536c79c106ce913f8b9cc7de4795ec61a1b60a663fb7b762
SPDX SBOMhttps://spdx.dev/Documentdhi.io/neo4j@sha256:7f924f75e873611c1fe6d5a311444fb30e95d91cbf02f32fdd80c914082a0c96