GeekZoneHQ / web

Software to power the Geek.Zone website and apps
http://geek.zone/web
GNU General Public License v3.0
19 stars 29 forks source link

Change executor in cicd pipeline #681

Closed giulio-giunta closed 9 months ago

giulio-giunta commented 1 year ago

What did you expect?

We expect the cicd pipeline to succeed.

What actually happened?

The executor used to run the cicd pipeline create a Geek Zone backend image with a Python version that does not reflect what's configured in the Dockerfile. As a consequence of this, Snyk fails the pipeline because it detects several vulnerabilities.

Impact

High

Urgency

Now

What browsers are you seeing the problem on?

No response

What operating system are you using?

No response

Relevant log output

Tested 3 projects, 2 contained vulnerable paths.

Code of Conduct

jamesgeddes commented 9 months ago

Resolved by #675