Configuration and vulnerability analysis in App Runner
AWS and our customers share responsibility for achieving a high level of software component security and compliance. For more information, see the
AWS shared responsibility model
Patch container images
Patching the container image is part of the customer's responsibility in the shared security model. The image owner is responsible for updating and regularly patching the container image. We recommend establishing a routine schedule for checking and applying updates to your container images. For more information on how to scan your images for vulnerabilities, see the AWS App Runner Documentation
For other App Runner security topics, see Security in App Runner.