Skip to content

Weekly security scan #29

Weekly security scan

Weekly security scan #29

Triggered via schedule March 4, 2024 12:27
Status Failure
Total duration 8m 7s
Artifacts
Matrix: Trivy
Fit to window
Zoom out
Zoom in

Annotations

30 errors and 3 warnings
Trivy (release-1.4)
repository.gitLabRepository.GetFile calls io.ReadAll, which eventually calls internal.chunkedReader.Read
Trivy (release-1.4)
machine.init calls drain.init, which eventually calls filepath.IsLocal
Trivy (release-1.4)
envtest.newEnvironment calls envtest.Environment.Start, which eventually calls safefilepath.FromFS
Trivy (release-1.4)
envtest.newEnvironment calls envtest.Environment.Start, which eventually calls safefilepath.FromFS
Trivy (release-1.4)
cluster.proxy.GetContexts calls clientcmd.ClientConfigLoadingRules.Load, which eventually calls filepath.Abs
Trivy (release-1.4)
remote.adjustCommand calls filepath.Base
Trivy (release-1.4)
cluster.objectMover.filesToObjs calls filepath.Clean
Trivy (release-1.4)
repository.NewGitHubRepository calls filepath.Dir
Trivy (release-1.4)
repository.gitLabRepository.GetFile calls http.Client.Do, which eventually calls filepath.Glob
Trivy (release-1.4)
machine.init calls drain.init, which eventually calls filepath.IsLocal
Trivy (release-1.5)
repository.gitLabRepository.GetFile calls io.ReadAll, which eventually calls internal.chunkedReader.Read
Trivy (release-1.5)
cmd.init calls cmd.init, which eventually calls filepath.IsLocal
Trivy (release-1.5)
envtest.newEnvironment calls envtest.Environment.Start, which eventually calls safefilepath.FromFS
Trivy (release-1.5)
envtest.newEnvironment calls envtest.Environment.Start, which eventually calls safefilepath.FromFS
Trivy (release-1.5)
cluster.proxy.GetContexts calls clientcmd.ClientConfigLoadingRules.Load, which eventually calls filepath.Abs
Trivy (release-1.5)
remote.adjustCommand calls filepath.Base
Trivy (release-1.5)
cluster.objectMover.filesToObjs calls filepath.Clean
Trivy (release-1.5)
repository.NewGitHubRepository calls filepath.Dir
Trivy (release-1.5)
repository.gitLabRepository.GetFile calls http.Client.Do, which eventually calls filepath.Glob
Trivy (release-1.5)
cmd.init calls cmd.init, which eventually calls filepath.IsLocal
Trivy (main)
repository.gitLabRepository.GetFile calls io.ReadAll, which eventually calls internal.chunkedReader.Read
Trivy (main)
cmd.init calls cmd.init, which eventually calls filepath.IsLocal
Trivy (main)
envtest.newEnvironment calls envtest.Environment.Start, which eventually calls safefilepath.FromFS
Trivy (main)
envtest.newEnvironment calls envtest.Environment.Start, which eventually calls safefilepath.FromFS
Trivy (main)
cluster.proxy.GetContexts calls clientcmd.ClientConfigLoadingRules.Load, which eventually calls filepath.Abs
Trivy (main)
remote.adjustCommand calls filepath.Base
Trivy (main)
cluster.objectMover.filesToObjs calls filepath.Clean
Trivy (main)
repository.NewGitHubRepository calls filepath.Dir
Trivy (main)
repository.gitLabRepository.GetFile calls http.Client.Do, which eventually calls filepath.Glob
Trivy (main)
cmd.init calls cmd.init, which eventually calls filepath.IsLocal
Trivy (release-1.4)
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
Trivy (release-1.5)
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
Trivy (main)
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.