We're thrilled to share that Snyk can now raise fix pull requests against your Dockerfiles!
For every scanned Dockerfile that contains a base image for which we provide recommendations, we will raise an automatic fix PR in case there is a better base image that can be used. The PR will be opened with the minor upgrade available.
After it is opened, the fix PR can be found in your Git repository, showing the FROM line changed in your Dockerfile, updated with the new and improved base image version.
We also provide the option to manually open a fix PR and upgrade to any of the base image recommendations we provide (rather than just the minor version). This option is available using a button next to each one of the base images in the recommendations table.
You can enable/disable the feature using the setting that can be found in the integration level.
You can learn more about our automatic Dockerfile fix PR capability in our blog post.
For more details about opening PRs in your Dockerfile, see our product documentation.