bitwarden / self-host

Bitwarden's self-hosted release repository
GNU General Public License v3.0
331 stars 61 forks source link

Update core, web, and key-connector versions #201

Closed github-actions[bot] closed 8 months ago

github-actions[bot] commented 8 months ago
## Type of change
- [ ] Bug fix
- [ ] New feature development
- [ ] Tech debt (refactoring, code cleanup, dependency upgrades, etc)
- [ ] Build/deploy pipeline (DevOps)
- [X] Other

## Objective
Automated version updates to core, web, and key-connector versions in version.json, bitwarden.sh and bitwarden.ps1.
bitwarden-bot commented 8 months ago

Logo Checkmarx One – Scan Summary & Details00507eaf-c6b5-4f06-be65-232450a3111d

Fixed Issues

Severity Issue Source File / Package
HIGH Missing User Instruction /Dockerfile: 176
HIGH Passwords And Secrets - Generic Password /Dockerfile: 203
HIGH Passwords And Secrets - Generic Password /docker-compose.yml: 23
HIGH Passwords And Secrets - Generic Password /docker-compose.yml: 46
HIGH Passwords And Secrets - Generic Password /docker-compose.yml: 35
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 212
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 212
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 8
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 212
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 8
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 8
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 212
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 212
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 212
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 54
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: 8
MEDIUM Container Traffic Not Bound To Host Interface /docker-compose.yml: 12
MEDIUM Healthcheck Not Set /docker-compose.yml: 5
MEDIUM Healthcheck Not Set /docker-compose.yml: 20
MEDIUM Host Namespace is Shared /docker-compose.yml: 5
MEDIUM Host Namespace is Shared /docker-compose.yml: 20
MEDIUM Memory Not Limited /docker-compose.yml: 5
MEDIUM Memory Not Limited /docker-compose.yml: 20
MEDIUM NPM Install Command Without Pinned Version /Dockerfile: 58
MEDIUM Networks Not Set /docker-compose.yml: 20
MEDIUM Networks Not Set /docker-compose.yml: 5
MEDIUM Privileged Ports Mapped In Container /docker-compose.yml: 12
MEDIUM Security Opt Not Set /docker-compose.yml: 20
MEDIUM Security Opt Not Set /docker-compose.yml: 5
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 218
MEDIUM Unpinned Actions Full Length Commit SHA /update-links.yml: 63
MEDIUM Unpinned Actions Full Length Commit SHA /update-links.yml: 71
MEDIUM Unpinned Actions Full Length Commit SHA /release-digital-ocean.yml: 29
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 114
MEDIUM Unpinned Actions Full Length Commit SHA /update-links.yml: 47
MEDIUM Unpinned Actions Full Length Commit SHA /build-unified.yml: 194
MEDIUM Unpinned Actions Full Length Commit SHA /update-versions.yml: 49
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 257
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 46
MEDIUM Unpinned Actions Full Length Commit SHA /DCT-test.yml: 30
MEDIUM Unpinned Actions Full Length Commit SHA /release-web-latest.yml: 35
MEDIUM Unpinned Actions Full Length Commit SHA /update-versions.yml: 73
MEDIUM Unpinned Actions Full Length Commit SHA /build-unified.yml: 101
MEDIUM Unpinned Actions Full Length Commit SHA /update-links.yml: 55
MEDIUM Unpinned Actions Full Length Commit SHA /update-versions.yml: 27
MEDIUM Unpinned Actions Full Length Commit SHA /build-unified.yml: 108
MEDIUM Using Platform Flag with FROM Command /Dockerfile: 5
MEDIUM Using Platform Flag with FROM Command /Dockerfile: 37
LOW Container Capabilities Unrestricted /docker-compose.yml: 20
LOW Container Capabilities Unrestricted /docker-compose.yml: 5
LOW Cpus Not Limited /docker-compose.yml: 20
LOW Cpus Not Limited /docker-compose.yml: 5
LOW Healthcheck Instruction Missing /Dockerfile: 176
LOW Missing_CSP_Header /docker-unified/hbs/app-id.hbs: 9
LOW Multiple RUN, ADD, COPY, Instructions Listed /Dockerfile: 222
LOW Multiple RUN, ADD, COPY, Instructions Listed /Dockerfile: 249