adeo / mozaic-design-system

Mozaic Design System
https://mozaic.adeo.cloud
Apache License 2.0
68 stars 17 forks source link

Gatsby Global Code Refactor #1520

Closed tiloyi closed 6 months ago

tiloyi commented 7 months ago

[skip ci]

I have read the contributing guidelines

Does this PR introduce a breaking change?

Describe the changes

GitHub issue number or Jira issue URL: N/A

Other information

mohamedMok commented 6 months ago

https://featgatsbycoderefactor-dot-demo-dot-mozaic-design-system-dtrp.ey.r.appspot.com/

SimonCfn commented 6 months ago

Logo Checkmarx One – Scan Summary & Details7a738d99-d3e3-4423-b2d8-4ff4177ed64e

New Issues

Severity Issue Source File / Package Checkmarx Insight
MEDIUM Client_Potential_XSS /packages/gatsby-theme-styleguide/src/components/AreaContact/AreaContact.js: 5 Attack Vector
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 40 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 37 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 31 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 46 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 58 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 43 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 65 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 53 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 52 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...

Fixed Issues

Severity Issue Source File / Package
MEDIUM Client_Potential_XSS /packages/gatsby-theme-styleguide/src/components/AreaContact/AreaContact.js: 41
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 45
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 57
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 42
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 52
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 36
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 30
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 64
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 39
MEDIUM Unpinned Actions Full Length Commit SHA /push.yml: 51