An utility like pkg-audit based on Arch CVE Monitoring Team data
RUN pacman -S --noconfirm arch-audit