Closed V1ct0rHM closed 1 month ago
Thank you for your contribution! We've added this to our internal Community PR board for review. ID: PM-10926
Checkmarx One – Scan Summary & Details – 04c2fbeb-f446-4bcb-aa25-b6218d1dc620
Severity | Issue | Source File / Package | Checkmarx Insight |
---|---|---|---|
Unpinned Actions Full Length Commit SHA | /release-chart.yaml: 32 | Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps... | |
Unpinned Actions Full Length Commit SHA | /release-chart.yaml: 27 | Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps... |
Severity | Issue | Source File / Package |
---|---|---|
Passwords And Secrets - Generic Password | /tests.yml: 117 | |
Unpinned Actions Full Length Commit SHA | /version-bump-sm-operator.yml: 30 | |
Unpinned Actions Full Length Commit SHA | /tests.yml: 38 | |
Unpinned Actions Full Length Commit SHA | /release.yml: 39 | |
Unpinned Actions Full Length Commit SHA | /version-bump-self-host.yml: 96 | |
Unpinned Actions Full Length Commit SHA | /version-bump-self-host.yml: 39 | |
Unpinned Actions Full Length Commit SHA | /version-bump-self-host.yml: 111 | |
Unpinned Actions Full Length Commit SHA | /update-versions-self-host.yml: 131 | |
Unpinned Actions Full Length Commit SHA | /version-bump-self-host.yml: 103 | |
Unpinned Actions Full Length Commit SHA | /version-bump-self-host.yml: 23 | |
Unpinned Actions Full Length Commit SHA | /version-bump-sm-operator.yml: 47 | |
Unpinned Actions Full Length Commit SHA | /release.yml: 63 | |
Unpinned Actions Full Length Commit SHA | /update-versions-self-host.yml: 27 | |
Unpinned Actions Full Length Commit SHA | /update-versions-self-host.yml: 52 |
Thank you for your submission! We really appreciate it. Like many open source projects, we ask that you sign our Contributor License Agreement before we can accept your contribution.
You have signed the CLA already but the status is still pending? Let us recheck it.