Merge pull request #136 from catenax-ng/security_fix_qg_4 #408
Annotations
12 warnings
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@v3, github/codeql-action/upload-sarif@v2. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
Upload SARIF file for GitHub Advanced Security Dashboard
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/
|
KICS scan:
charts/orchestrator/templates/deployment.yaml#L50
Check if containers are running with low UID, which might cause conflicts with the host's user table.
|
KICS scan:
charts/orchestrator/templates/deployment.yaml#L50
Containers should drop 'ALL' or at least 'NET_RAW' capabilities
|
KICS scan:
docs/autosetup-api.yaml#L363
String schema should have 'pattern' defined.
|
KICS scan:
docs/autosetup-api.yaml#L515
String schema should have 'pattern' defined.
|
KICS scan:
docs/autosetup-api.yaml#L291
String schema should have 'pattern' defined.
|
KICS scan:
docs/autosetup-api.yaml#L534
String schema should have 'pattern' defined.
|
KICS scan:
docs/autosetup-api.yaml#L568
String schema should have 'pattern' defined.
|
KICS scan:
docs/autosetup-api.yaml#L418
String schema should have 'pattern' defined.
|
KICS scan:
docs/autosetup-api.yaml#L528
String schema should have 'pattern' defined.
|
KICS scan:
docs/autosetup-api.yaml#L359
String schema should have 'pattern' defined.
|
Loading