-
Notifications
You must be signed in to change notification settings - Fork 4.4k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Update security-scan.hcl #21739
Update security-scan.hcl #21739
Conversation
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
lgtm
@@ -79,7 +79,8 @@ binary { | |||
suppress { | |||
# N.b. `vulnerabilites` is the correct spelling for this tool. | |||
vulnerabilites = [ | |||
"CVE-2024-8096", # [email protected] | |||
"CVE-2024-8096", # [email protected], | |||
"CVE-2024-8096", # [email protected], |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
This comment is just informational for us to keep track of why we skipped the CVE - AFAIK it has no functional effect on scans. We might need to dig deeper into why scans are still failing 🤔
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Should we have it only in one line since they are both for the same CVE?
"CVE-2024-8096", # [email protected], [email protected]
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
1 similar comment
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
6 similar comments
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
10 similar comments
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
📣 Hi @sarahalsmiller! a backport is missing for this PR [21739] for versions [1.15,1.17,1.18,1.19] please perform the backport manually and add the following snippet to your backport PR description:
|
Description
Prepare job is still failing despite suppression, attempting to add a line with the updated version
Testing & Reproduction steps
Links
PR Checklist