Complete Python 3.14.2-alpine upgrade with container versioning#290
Merged
adthrasher merged 2 commits intosnyk-fix-2a188fd777e3c8c8cba6680c84ad1716from Feb 6, 2026
Conversation
Co-authored-by: adthrasher <1165729+adthrasher@users.noreply.github.com>
Copilot
AI
changed the title
[WIP] Update workflow for improved automation
Complete Python 3.14.2-alpine upgrade with container versioning
Jan 21, 2026
adthrasher
approved these changes
Jan 21, 2026
f598e8e
into
snyk-fix-2a188fd777e3c8c8cba6680c84ad1716
19 of 22 checks passed
adthrasher
added a commit
that referenced
this pull request
Feb 6, 2026
Snyk's automated PR updated the Dockerfile but missed the repository's
container versioning system. Container images are tagged as
`{version}-{revision}` based on `package.json`, and workflows reference
these tags explicitly.
## Changes
- Incremented `docker/umap/package.json` revision: `10` → `11`
- Updated `workflows/methylation/methylation-cohort.wdl` container tag:
`ghcr.io/stjudecloud/umap:0.5.7-10` → `0.5.7-11`
This ensures the Python 3.14.2-alpine base image (fixing 2 critical + 2
high severity vulnerabilities) is properly versioned and consumed by
dependent workflows.
Before submitting this PR, please make sure:
- [x] You have added a few sentences describing the PR here.
- [ ] The code passes all CI tests without any errors or warnings.
- [ ] You have added tests (when appropriate).
- [ ] You have added an entry in any relevant CHANGELOGs (when
appropriate).
- [x] If you have made any changes to the `scripts/` or `docker/`
directories, please ensure any image versions have been incremented
accordingly!
- [ ] You have updated the README or other documentation to account for
these changes (when appropriate).
<!-- START COPILOT CODING AGENT SUFFIX -->
<!-- START COPILOT ORIGINAL PROMPT -->
<details>
<summary>Original prompt</summary>
> Pull Request: #286
</details>
<!-- START COPILOT CODING AGENT TIPS -->
---
💬 We'd love your input! Share your thoughts on Copilot coding agent in
our [2 minute survey](https://gh.io/copilot-coding-agent-survey).
---------
Co-authored-by: copilot-swe-agent[bot] <198982749+Copilot@users.noreply.github.com>
Co-authored-by: adthrasher <1165729+adthrasher@users.noreply.github.com>
This file contains hidden or bidirectional Unicode text that may be interpreted or compiled differently than what appears below. To review, open the file in an editor that reveals hidden Unicode characters.
Learn more about bidirectional Unicode characters
Sign up for free
to join this conversation on GitHub.
Already have an account?
Sign in to comment
Add this suggestion to a batch that can be applied as a single commit.This suggestion is invalid because no changes were made to the code.Suggestions cannot be applied while the pull request is closed.Suggestions cannot be applied while viewing a subset of changes.Only one suggestion per line can be applied in a batch.Add this suggestion to a batch that can be applied as a single commit.Applying suggestions on deleted lines is not supported.You must change the existing code in this line in order to create a valid suggestion.Outdated suggestions cannot be applied.This suggestion has been applied or marked resolved.Suggestions cannot be applied from pending reviews.Suggestions cannot be applied on multi-line comments.Suggestions cannot be applied while the pull request is queued to merge.Suggestion cannot be applied right now. Please check back later.
Snyk's automated PR updated the Dockerfile but missed the repository's container versioning system. Container images are tagged as
{version}-{revision}based onpackage.json, and workflows reference these tags explicitly.Changes
docker/umap/package.jsonrevision:10→11workflows/methylation/methylation-cohort.wdlcontainer tag:ghcr.io/stjudecloud/umap:0.5.7-10→0.5.7-11This ensures the Python 3.14.2-alpine base image (fixing 2 critical + 2 high severity vulnerabilities) is properly versioned and consumed by dependent workflows.
Before submitting this PR, please make sure:
scripts/ordocker/directories, please ensure any image versions have been incremented accordingly!Original prompt
💬 We'd love your input! Share your thoughts on Copilot coding agent in our 2 minute survey.