Closed renovate[bot] closed 4 months ago
Internal tracking:
Checkmarx One – Scan Summary & Details – d74f86e3-6025-463c-8378-9ac2acedebf1
Severity | Issue | Source File / Package | Checkmarx Insight |
---|---|---|---|
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | Attack Vector | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | Attack Vector |
Severity | Issue | Source File / Package |
---|---|---|
Client_Privacy_Violation | /src/app/accounts/apiKey.component.ts: 27 | |
Client_Privacy_Violation | /src/app/tabs/settings.component.html: 370 | |
Client_Privacy_Violation | /src/app/tabs/settings.component.html: 229 | |
Client_Privacy_Violation | /src/app/tabs/settings.component.html: 212 | |
Client_Privacy_Violation | /src/app/accounts/apiKey.component.html: 22 | |
Missing_HSTS_Header | /jslib/common/src/services/api.service.ts: 243 | |
Missing_HSTS_Header | /jslib/common/src/services/api.service.ts: 243 | |
SSRF | /src/services/onelogin-directory.service.ts: 178 | |
Client_DOM_Open_Redirect | /jslib/common/src/misc/iframe_component.ts: 49 | |
Client_DOM_Open_Redirect | /jslib/common/src/misc/webauthn_iframe.ts: 25 | |
Client_DOM_Open_Redirect | /jslib/common/src/misc/iframe_component.ts: 49 | |
Client_DOM_Open_Redirect | /jslib/common/src/misc/webauthn_iframe.ts: 25 | |
Client_Password_In_Comment | /jslib/common/src/services/userVerification.service.ts: 25 | |
Client_Password_In_Comment | /jslib/common/src/enums/policyType.ts: 10 | |
Client_Password_In_Comment | /jslib/common/src/services/userVerification.service.ts: 25 | |
Client_Password_In_Comment | /jslib/common/src/enums/policyType.ts: 10 | |
Log_Forging | /src/services/azure-directory.service.ts: 497 | |
Missing_CSP_Header | /jslib/common/src/services/azureFileUpload.service.ts: 28 | |
Missing_CSP_Header | /jslib/common/src/services/azureFileUpload.service.ts: 28 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 388 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 388 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 388 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 388 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 388 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 388 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 388 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 388 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 508 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 519 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 517 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 516 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 494 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 493 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 492 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 106 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 105 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 104 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 247 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 246 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 245 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 129 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 128 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 127 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 81 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 363 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 343 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 339 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 332 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 331 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 363 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 343 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 339 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 332 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 331 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 363 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 343 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 339 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 332 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 331 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 363 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 343 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 339 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 332 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 331 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 363 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 343 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 339 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 332 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 331 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 363 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 343 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 339 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 332 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 331 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 363 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 343 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 339 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 332 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 331 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 129 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 128 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 127 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 129 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 128 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 127 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 129 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 128 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 127 | |
Use_Of_Hardcoded_Password | /jslib/common/src/services/passwordGeneration.service.ts: 112 | |
Use_Of_Hardcoded_Password | /jslib/common/src/services/passwordGeneration.service.ts: 106 | |
Use_Of_Hardcoded_Password | /jslib/common/src/services/passwordGeneration.service.ts: 104 | |
Use_Of_Hardcoded_Password | /jslib/common/src/services/passwordGeneration.service.ts: 98 | |
Use_Of_Hardcoded_Password | /jslib/common/src/services/passwordGeneration.service.ts: 96 | |
Use_Of_Hardcoded_Password | /jslib/common/src/services/passwordGeneration.service.ts: 90 | |
Use_Of_Hardcoded_Password | /jslib/common/src/services/passwordGeneration.service.ts: 88 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 363 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 343 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 339 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 328 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 327 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 332 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 331 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 353 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 353 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 356 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 355 | |
Use_Of_Hardcoded_Password | /jslib/node/src/cli/commands/login.command.ts: 81 | |
Use_Of_Hardcoded_Password | /jslib/node/spec/services/nodeCryptoFunction.service.spec.ts: 306 | |
Use_Of_Hardcoded_Password | /jslib/node/spec/services/nodeCryptoFunction.service.spec.ts: 305 | |
Use_Of_Hardcoded_Password | /jslib/node/spec/services/nodeCryptoFunction.service.spec.ts: 304 | |
Use_Of_Hardcoded_Password | /jslib/node/spec/services/nodeCryptoFunction.service.spec.ts: 304 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/domain/login.spec.ts: 40 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/domain/password.spec.ts: 29 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/misc/logInStrategies/logIn.strategy.spec.ts: 27 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/misc/logInStrategies/passwordLogIn.strategy.spec.ts: 24 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/misc/logInStrategies/passwordLogIn.strategy.spec.ts: 24 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/misc/logInStrategies/passwordLogIn.strategy.spec.ts: 23 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/misc/logInStrategies/passwordLogIn.strategy.spec.ts: 23 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/misc/logInStrategies/passwordLogIn.strategy.spec.ts: 22 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/misc/logInStrategies/passwordLogIn.strategy.spec.ts: 22 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/misc/logInStrategies/passwordLogIn.strategy.spec.ts: 22 | |
Use_Of_Hardcoded_Password | /jslib/common/src/services/cipher.service.ts: 133 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/domain/login.spec.ts: 90 | |
Use_Of_Hardcoded_Password | /jslib/common/spec/domain/login.spec.ts: 69 | |
This PR contains the following updates:
v4.3.1
->v4.3.2
Release Notes
actions/upload-artifact (actions/upload-artifact)
### [`v4.3.2`](https://togithub.com/actions/upload-artifact/releases/tag/v4.3.2) [Compare Source](https://togithub.com/actions/upload-artifact/compare/v4.3.1...v4.3.2) #### What's Changed - Update release-new-action-version.yml by [@konradpabjan](https://togithub.com/konradpabjan) in [https://github.com/actions/upload-artifact/pull/516](https://togithub.com/actions/upload-artifact/pull/516) - Minor fix to the migration readme by [@andrewakim](https://togithub.com/andrewakim) in [https://github.com/actions/upload-artifact/pull/523](https://togithub.com/actions/upload-artifact/pull/523) - Update readme with v3/v2/v1 deprecation notice by [@robherley](https://togithub.com/robherley) in [https://github.com/actions/upload-artifact/pull/561](https://togithub.com/actions/upload-artifact/pull/561) - updating `@actions/artifact` dependency to v2.1.5 and `@actions/core` to v1.0.1 by [@eggyhead](https://togithub.com/eggyhead) in [https://github.com/actions/upload-artifact/pull/562](https://togithub.com/actions/upload-artifact/pull/562) #### New Contributors - [@andrewakim](https://togithub.com/andrewakim) made their first contribution in [https://github.com/actions/upload-artifact/pull/523](https://togithub.com/actions/upload-artifact/pull/523) **Full Changelog**: https://github.com/actions/upload-artifact/compare/v4.3.1...v4.3.2Configuration
📅 Schedule: Branch creation - "every weekend" (UTC), Automerge - At any time (no schedule defined).
🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.
♻ Rebasing: Whenever PR is behind base branch, or you tick the rebase/retry checkbox.
🔕 Ignore: Close this PR and you won't be reminded about this update again.
This PR has been generated by Mend Renovate. View repository job log here.