-
Per old agenda AI
- snyk for dependaBot type of checks
- look into adding a bot that scans for security issues too
-
Currently the mocha@10.0.0 version has not upgraded its yarg-parser and yargs which is causing a security vulnerability (NO-CVE: Regular Expression Denial Of Service (ReDoS)) . Please help upgrade bo…
-
The documentation about the scan command (snyk?) doesn't mention if any data is sent of the device running the scan command.
Also, if any data is sent, you should explain what data is sent, and why…
-
**Steps to Reproduce**
1. clone the repo
2. copy model.ckpt to models
3. cd ./AUTOMATIC1111
5. docker compose up --build
There are no problems with the previous steps, but the last error is re…
-
[ ] I have checked the [documentation](https://docs.ragas.io/) and related resources and couldn't resolve my bug.
**Describe the bug**
I’ve identified that the onnx package listed in the [src/expe…
-
I am looking at using GATK and first checked at the docker image using **_docker pull broadinstitute/gatk_**
this container image has 1460 vulnerabilities and a lot of them are critical.
Then…
-
## Current Behavior
Multiple errors are printed to the console for each vulnerability when running `snyk-to-html` outside of the scanned projects root directory and using the output of `snyk code tes…
-
## Required Information
* [ ] AEM Version/SP - 6.5.17
* [ ] ACS AEM Commons Version: 6.3.8
### Expected Behavior
No vulnerabilities regarding logback and nekohtml
### Actual Behavior
…
-
### Actual Behavior
When using the Snyk extension in Docker Desktop users get an "Authentication is required" message when pulling from a private registry.
### Steps to Reproduce
1. Configure Ranch…
-
/kind feature
**Describe the solution you'd like**
[A clear and concise description of what you want to happen.]
Currently, we manually scan container images to resolve security issues just befor…