FROM ghcr.io/berriai/litellm@sha256:... + apk upgrade -- no app-code changes. Same idea
as the apt-get upgrade pattern used for the Debian-based patch images (fireflyiii-core,
fireflyiii-data-importer, openclaw), but this image is Wolfi-based (apk, not apt).
Upstream scanned clean except for one CVE (CVE-2026-15308, python-3.13/python-3.13-base,
both fixed upstream in the Wolfi package repo). apk upgrade clears it entirely -- 0
HIGH/CRITICAL findings after patching, no trivyignore-entries.yml exception needed.
Used by home-k8s-config's openclaw_litellm_image.
Content type
Image
Digest
sha256:b442b38d8…
Size
426.9 MB
Last updated
about 2 hours ago
docker pull gschaetz/litellm