Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Bugs #12516: hide STATIC_ATTACHEMENT unit in collect archives list #1718

Merged
merged 1 commit into from
Mar 27, 2024

Conversation

ebernard
Copy link
Contributor

Hide STATIC_ATTACHEMENT (sic) unit from archives list in the collect module.

@GiooDev GiooDev added this to the IT 133 milestone Mar 26, 2024
@ebernard ebernard added the bug Something isn't working label Mar 26, 2024
@vitam-devops
Copy link
Collaborator

Logo
Checkmarx One – Scan Summary & Details6826607f-2179-480e-a70b-c470a141a2b2

New Issues

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2019-15599 Npm-tree-kill-1.2.1 Vulnerable Package
HIGH CVE-2020-28502 Npm-xmlhttprequest-ssl-1.5.5 Vulnerable Package
HIGH CVE-2020-36048 Npm-engine.io-3.2.1 Vulnerable Package
HIGH CVE-2020-36049 Npm-socket.io-parser-3.2.0 Vulnerable Package
HIGH CVE-2020-7660 Npm-serialize-javascript-1.9.1 Vulnerable Package
HIGH CVE-2020-7788 Npm-ini-1.3.5 Vulnerable Package
HIGH CVE-2021-31597 Npm-xmlhttprequest-ssl-1.5.5 Vulnerable Package
HIGH CVE-2022-2421 Npm-socket.io-parser-3.2.0 Vulnerable Package
HIGH CVE-2023-32695 Npm-socket.io-parser-3.2.0 Vulnerable Package
MEDIUM CVE-2019-16769 Npm-serialize-javascript-1.9.1 Vulnerable Package
MEDIUM CVE-2020-15366 Npm-ajv-6.10.0 Vulnerable Package
MEDIUM CVE-2020-15366 Npm-ajv-5.5.2 Vulnerable Package
MEDIUM CVE-2020-28481 Npm-socket.io-2.1.1 Vulnerable Package
MEDIUM CVE-2020-7693 Npm-sockjs-0.3.19 Vulnerable Package
MEDIUM CVE-2021-23364 Npm-browserslist-4.5.5 Vulnerable Package
MEDIUM CVE-2021-23495 Npm-karma-4.1.0 Vulnerable Package
MEDIUM CVE-2022-0437 Npm-karma-4.1.0 Vulnerable Package
MEDIUM CVE-2022-21704 Npm-log4js-4.5.1 Vulnerable Package
MEDIUM CVE-2022-41940 Npm-engine.io-3.2.1 Vulnerable Package

Fixed Issues

Severity Issue Source File / Package
HIGH Missing User Instruction /Dockerfile: 10
HIGH Missing User Instruction /Dockerfile: 10
HIGH Missing User Instruction /Dockerfile: 10
HIGH Missing User Instruction /Dockerfile: 11
HIGH No New Privileges Not Set /vitam-recette.yml: 54
HIGH No New Privileges Not Set /docker-compose.yml: 10
HIGH No New Privileges Not Set /vitam-recette.yml: 17
HIGH No New Privileges Not Set /vitam-dev.yml: 19
HIGH Passwords And Secrets - Generic Password /mongo_dev.yml: 37
HIGH Passwords And Secrets - Generic Password /mongo_cluster.yml: 11
HIGH Passwords And Secrets - Generic Password /mongo_cluster.yml: 34
HIGH Passwords And Secrets - Generic Password /Dockerfile: 67
HIGH Passwords And Secrets - Password in URL /mongo_dev.yml: 38
HIGH Privileged Containers Enabled /docker-compose.yml: 7
HIGH Privileged Containers Enabled /docker-compose.yml: 52
HIGH Privileged Containers Enabled /docker-compose.yml: 21
HIGH Privileged Containers Enabled /vitam-recette.yml: 14
HIGH Privileged Containers Enabled /vitam-recette.yml: 51
HIGH Privileged Containers Enabled /vitam-dev.yml: 16
HIGH Volume Has Sensitive Host Directory /docker-compose.yml: 9
HIGH Volume Has Sensitive Host Directory /vitam-dev.yml: 25
HIGH Volume Has Sensitive Host Directory /vitam-dev.yml: 27
HIGH Volume Has Sensitive Host Directory /docker-compose.yml: 26
HIGH Volume Has Sensitive Host Directory /vitam-recette.yml: 57
HIGH Volume Has Sensitive Host Directory /vitam-recette.yml: 20
HIGH Volume Has Sensitive Host Directory /docker-compose.yml: 25
HIGH Volume Has Sensitive Host Directory /vitam-dev.yml: 26
HIGH Volume Has Sensitive Host Directory /docker-compose.yml: 10
MEDIUM Add Instead of Copy /Dockerfile: 47
MEDIUM Add Instead of Copy /Dockerfile: 15
MEDIUM Add Instead of Copy /Dockerfile: 46
MEDIUM Container Traffic Not Bound To Host Interface /mongo_dev.yml: 12
MEDIUM Container Traffic Not Bound To Host Interface /vitam-dev.yml: 28
MEDIUM Container Traffic Not Bound To Host Interface /mongo_dev.yml: 29
MEDIUM Container Traffic Not Bound To Host Interface /vitam-recette.yml: 58
MEDIUM Container Traffic Not Bound To Host Interface /docker-compose.yml: 19
MEDIUM Container Traffic Not Bound To Host Interface /vitam-recette.yml: 21
MEDIUM Container Traffic Not Bound To Host Interface /docker-compose.yml: 38
MEDIUM Container Traffic Not Bound To Host Interface /docker-compose.yml: 7
MEDIUM Container Traffic Not Bound To Host Interface /mongo_cluster.yml: 16
MEDIUM Container Traffic Not Bound To Host Interface /mongo_cluster.yml: 60
MEDIUM Container Traffic Not Bound To Host Interface /mongo_cluster.yml: 39
MEDIUM Container Traffic Not Bound To Host Interface /jaeger-docker-compose.yml: 5
MEDIUM Healthcheck Not Set /docker-compose.yml: 49
MEDIUM Healthcheck Not Set /docker-compose.yml: 41
MEDIUM Healthcheck Not Set /mongo_cluster.yml: 49
MEDIUM Healthcheck Not Set /jaeger-docker-compose.yml: 3
MEDIUM Healthcheck Not Set /mongo_cluster.yml: 4
MEDIUM Healthcheck Not Set /vitam-recette.yml: 4
MEDIUM Healthcheck Not Set /docker-compose.yml: 17
MEDIUM Healthcheck Not Set /mongo_cluster.yml: 27
MEDIUM Healthcheck Not Set /docker-compose.yml: 4
MEDIUM Healthcheck Not Set /docker-compose.yml: 3
MEDIUM Healthcheck Not Set /vitam-dev.yml: 4
MEDIUM Healthcheck Not Set /docker-compose.yml: 4
MEDIUM Healthcheck Not Set /mongo_dev.yml: 25
MEDIUM Healthcheck Not Set /docker-compose.yml: 4
MEDIUM Healthcheck Not Set /docker-compose.yml: 27
MEDIUM Healthcheck Not Set /vitam-recette.yml: 41
MEDIUM Healthcheck Not Set /mongo_dev.yml: 4
MEDIUM Healthcheck Not Set /docker-compose.yml: 4
MEDIUM Host Namespace is Shared /vitam-recette.yml: 4
MEDIUM Host Namespace is Shared /docker-compose.yml: 41
MEDIUM Host Namespace is Shared /docker-compose.yml: 27
MEDIUM Host Namespace is Shared /mongo_dev.yml: 4
MEDIUM Host Namespace is Shared /mongo_cluster.yml: 27
MEDIUM Host Namespace is Shared /docker-compose.yml: 17
MEDIUM Host Namespace is Shared /docker-compose.yml: 4
MEDIUM Host Namespace is Shared /docker-compose.yml: 4
MEDIUM Host Namespace is Shared /mongo_cluster.yml: 49
MEDIUM Host Namespace is Shared /vitam-recette.yml: 41
MEDIUM Host Namespace is Shared /docker-compose.yml: 49
MEDIUM Host Namespace is Shared /mongo_dev.yml: 25
MEDIUM Host Namespace is Shared /docker-compose.yml: 4
MEDIUM Host Namespace is Shared /vitam-dev.yml: 4
MEDIUM Host Namespace is Shared /mongo_cluster.yml: 4
MEDIUM Host Namespace is Shared /docker-compose.yml: 4
MEDIUM Host Namespace is Shared /jaeger-docker-compose.yml: 3
MEDIUM Host Namespace is Shared /docker-compose.yml: 3
MEDIUM Image Version Not Explicit /Dockerfile: 11
MEDIUM Memory Not Limited /docker-compose.yml: 4
MEDIUM Memory Not Limited /mongo_dev.yml: 25
MEDIUM Memory Not Limited /docker-compose.yml: 17
MEDIUM Memory Not Limited /docker-compose.yml: 4
MEDIUM Memory Not Limited /vitam-recette.yml: 41
MEDIUM Memory Not Limited /mongo_cluster.yml: 49
MEDIUM Memory Not Limited /docker-compose.yml: 27
MEDIUM Memory Not Limited /docker-compose.yml: 49
MEDIUM Memory Not Limited /mongo_cluster.yml: 4
MEDIUM Memory Not Limited /mongo_dev.yml: 4
MEDIUM Memory Not Limited /docker-compose.yml: 3
MEDIUM Memory Not Limited /docker-compose.yml: 41
MEDIUM Memory Not Limited /vitam-recette.yml: 4
MEDIUM Memory Not Limited /jaeger-docker-compose.yml: 3
MEDIUM Memory Not Limited /docker-compose.yml: 4
MEDIUM Memory Not Limited /vitam-dev.yml: 4
MEDIUM Memory Not Limited /docker-compose.yml: 4
MEDIUM Memory Not Limited /mongo_cluster.yml: 27
MEDIUM Networks Not Set /docker-compose.yml: 3
MEDIUM Networks Not Set /docker-compose.yml: 4
MEDIUM Networks Not Set /docker-compose.yml: 4
MEDIUM Networks Not Set /docker-compose.yml: 4
MEDIUM Networks Not Set /jaeger-docker-compose.yml: 3
MEDIUM Networks Not Set /vitam-dev.yml: 4
MEDIUM Networks Not Set /docker-compose.yml: 41
MEDIUM Privileged Ports Mapped In Container /vitam-dev.yml: 28
MEDIUM Privileged Ports Mapped In Container /vitam-recette.yml: 21
MEDIUM SSRF /api/api-iam/iam-internal/src/main/java/fr/gouv/vitamui/iam/internal/server/rest/CasInternalController.java: 196
MEDIUM Security Opt Not Set /mongo_cluster.yml: 4
MEDIUM Security Opt Not Set /jaeger-docker-compose.yml: 3
MEDIUM Security Opt Not Set /docker-compose.yml: 17
MEDIUM Security Opt Not Set /docker-compose.yml: 41
MEDIUM Security Opt Not Set /docker-compose.yml: 49
MEDIUM Security Opt Not Set /docker-compose.yml: 4
MEDIUM Security Opt Not Set /docker-compose.yml: 4
MEDIUM Security Opt Not Set /mongo_dev.yml: 25
MEDIUM Security Opt Not Set /mongo_dev.yml: 4
MEDIUM Security Opt Not Set /mongo_cluster.yml: 27
MEDIUM Security Opt Not Set /mongo_cluster.yml: 49
MEDIUM Security Opt Not Set /docker-compose.yml: 3
MEDIUM Security Opt Not Set /docker-compose.yml: 4
MEDIUM Security Opt Not Set /docker-compose.yml: 27
MEDIUM Shared Host Network Namespace /docker-compose.yml: 6
MEDIUM Shared Host Network Namespace /docker-compose.yml: 5
MEDIUM Shared Host Network Namespace /docker-compose.yml: 45
MEDIUM Update Instruction Alone /Dockerfile: 14
MEDIUM Update Instruction Alone /Dockerfile: 14
MEDIUM Update Instruction Alone /Dockerfile: 17
MEDIUM Yum Clean All Missing /Dockerfile: 39
MEDIUM Yum Clean All Missing /Dockerfile: 45
MEDIUM Yum install Without Version /Dockerfile: 14
MEDIUM Yum install Without Version /Dockerfile: 14
MEDIUM Yum install Without Version /Dockerfile: 64
MEDIUM Yum install Without Version /Dockerfile: 60
MEDIUM Yum install Without Version /Dockerfile: 33
MEDIUM Yum install Without Version /Dockerfile: 33
MEDIUM Yum install Without Version /Dockerfile: 60
MEDIUM Yum install Without Version /Dockerfile: 64
MEDIUM Yum install Without Version /Dockerfile: 64
MEDIUM Yum install Without Version /Dockerfile: 17
MEDIUM Yum install Without Version /Dockerfile: 60
MEDIUM Yum install Without Version /Dockerfile: 60
MEDIUM Yum install Without Version /Dockerfile: 60
MEDIUM Yum install Without Version /Dockerfile: 77
MEDIUM Yum install Without Version /Dockerfile: 60
MEDIUM Yum install Without Version /Dockerfile: 60
MEDIUM Yum install Without Version /Dockerfile: 33
MEDIUM Yum install Without Version /Dockerfile: 33
MEDIUM Yum install Without Version /Dockerfile: 33
MEDIUM Yum install Without Version /Dockerfile: 33
MEDIUM Yum install Without Version /Dockerfile: 60
MEDIUM Yum install Without Version /Dockerfile: 69
MEDIUM Yum install Without Version /Dockerfile: 33
MEDIUM Yum install Without Version /Dockerfile: 39
MEDIUM Yum install Without Version /Dockerfile: 45
MEDIUM Yum install Without Version /Dockerfile: 64
MEDIUM Yum install Without Version /Dockerfile: 64
MEDIUM Yum install Without Version /Dockerfile: 33
LOW Container Capabilities Unrestricted /docker-compose.yml: 4
LOW Container Capabilities Unrestricted /docker-compose.yml: 49
LOW Container Capabilities Unrestricted /docker-compose.yml: 3
LOW Container Capabilities Unrestricted /docker-compose.yml: 4
LOW Container Capabilities Unrestricted /vitam-dev.yml: 17
LOW Container Capabilities Unrestricted /mongo_cluster.yml: 4
LOW Container Capabilities Unrestricted /docker-compose.yml: 17
LOW Container Capabilities Unrestricted /mongo_cluster.yml: 27
LOW Container Capabilities Unrestricted /mongo_dev.yml: 4
LOW Container Capabilities Unrestricted /vitam-dev.yml: 4
LOW Container Capabilities Unrestricted /mongo_cluster.yml: 49
LOW Container Capabilities Unrestricted /jaeger-docker-compose.yml: 3
LOW Container Capabilities Unrestricted /docker-compose.yml: 4
LOW Container Capabilities Unrestricted /mongo_dev.yml: 25
LOW Container Capabilities Unrestricted /docker-compose.yml: 27
LOW Container Capabilities Unrestricted /docker-compose.yml: 41
LOW Cpus Not Limited /mongo_dev.yml: 25
LOW Cpus Not Limited /docker-compose.yml: 17
LOW Cpus Not Limited /jaeger-docker-compose.yml: 3
LOW Cpus Not Limited /mongo_dev.yml: 4
LOW Cpus Not Limited /docker-compose.yml: 41
LOW Cpus Not Limited /mongo_cluster.yml: 27
LOW Cpus Not Limited /docker-compose.yml: 49
LOW Cpus Not Limited /vitam-recette.yml: 4
LOW Cpus Not Limited /docker-compose.yml: 4
LOW Cpus Not Limited /vitam-recette.yml: 41
LOW Cpus Not Limited /docker-compose.yml: 3
LOW Cpus Not Limited /docker-compose.yml: 4
LOW Cpus Not Limited /docker-compose.yml: 4
LOW Cpus Not Limited /docker-compose.yml: 27
LOW Cpus Not Limited /vitam-dev.yml: 4
LOW Cpus Not Limited /mongo_cluster.yml: 4
LOW Cpus Not Limited /docker-compose.yml: 4
LOW Cpus Not Limited /mongo_cluster.yml: 49
LOW Healthcheck Instruction Missing /Dockerfile: 10
LOW Healthcheck Instruction Missing /Dockerfile: 10
LOW Healthcheck Instruction Missing /Dockerfile: 10
LOW Healthcheck Instruction Missing /Dockerfile: 11
LOW MAINTAINER Instruction Being Used /Dockerfile: 11
LOW MAINTAINER Instruction Being Used /Dockerfile: 11
LOW MAINTAINER Instruction Being Used /Dockerfile: 11
LOW Multiple RUN, ADD, COPY, Instructions Listed /Dockerfile: 39
LOW Multiple RUN, ADD, COPY, Instructions Listed /Dockerfile: 71
LOW Unpinned Package Version /main.yml: 43
LOW Unpinned Package Version /vitamui.yml: 60
LOW Unpinned Package Version /main.yml: 30
LOW Unpinned Package Version /main.yml: 1
LOW Unpinned Package Version /prerequisites.yml: 13
LOW Unpinned Package Version /main.yml: 10
LOW Unpinned Package Version /main.yml: 1
LOW Unpinned Package Version /main.yml: 7
LOW Unpinned Package Version /main.yml: 1
LOW Unpinned Package Version /main.yml: 1
LOW Unpinned Package Version /main.yml: 1
LOW Unpinned Package Version /vitamui.yml: 1
LOW Unpinned Package Version /install.yml: 6
LOW Unpinned Package Version /main.yml: 6
LOW Unpinned Package Version /main.yml: 86
LOW Unpinned Package Version /apache.yml: 1
LOW Unpinned Package Version /vitamui.yml: 46
LOW Unpinned Package Version /install.yml: 1
LOW Unpinned Package Version /main.yml: 16

@ebernard ebernard merged commit 14f7106 into develop Mar 27, 2024
2 checks passed
@ebernard ebernard deleted the fix_12516__hide_static_attachement_unit branch March 27, 2024 09:42
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
bug Something isn't working
Projects
None yet
Development

Successfully merging this pull request may close these issues.

5 participants