More Info:

ECR repository policies should not enable global or public access to images. ECR repository policies should limit access to images to known IAM entities and AWS accounts and avoid the use of account-level wildcards.

Risk Level

High

Address

Security

Compliance Standards

HIPAA, PCIDSS, SOC2, AWSWAF, HITRUST, NISTCSF

Triage and Remediation

Remediation

Using Console

Additional Reading: