-
### 🔖 Feature description
Hi, I'm Harshita. I’m working with [CNCF and the Google Open Source Security Team for the GSoC 2024 term](https://github.com/cncf/mentoring/issues/1196). We are collaborat…
-
We currently have a few hundred `:all` bottles in this repository. I count another 200 or so more (see candidate formulae below) that could have an `:all` bottle but don't currently have one.
These…
-
**Actual behavior**
[Snyk](https://snyk.io/docker/) fails to scan docker images produced by kaniko:
```bash
➜ cat Dockerfile
FROM alpine
RUN echo 'abc' > /test.txt
➜ /kaniko/executor -f Doc…
-
### Describe the bug
Because this module ships with a shrinkwrap, it is impossible to avoid using the insecure `braces@3.0.2`, even using overrides.
Please either keep all dependencies up to dat…
-
I use this package as a part of CI/CD of a bunch of projects and recently all of them started to fail because of snyk dependecy that cannot be installed, and I believe that it is related to the incide…
-
## CVE-2022-22984 - Medium Severity Vulnerability
Vulnerable Libraries - snyk-gradle-plugin-3.11.0.tgz, snyk-docker-plugin-4.13.1.tgz, snyk-sbt-plugin-2.11.0.tgz, snyk-cocoapods-plugin-2.5.1.tgz, sny…
-
/snyk-prevent-gh-commit-status-linux
before i run the above command i need to run snyk test with outputfile option, snyk test fails when run as a stand alone.with mvn snyk plugin mvn snyk:test works…
-
At the moment, `snyk-to-html` "eats" the return code of `snyk`. This prevents a easy solution to the usecase of generating a HTML artifact for a failed snyk run within a CI/CD process, for example.
…
-
**Describe the solution you'd like**
It'd be nice to actually apply the security framework when building.
**Describe alternatives you've considered**
Ignoring security problems won't help.
-
- `node -v`: 14.16.1
- `npm -v`: 6.14.12
### Expected behaviour
I'm trying to run `snyk test --file=paket.dependencies` and I expect my lock file to be parsed.
### Actual behaviour
```
C…
nojaf updated
3 years ago