Closed WaciX closed 7 months ago
Checkmarx One – Scan Summary & Details – 4006f8ea-848e-4240-b1cc-409236e42eff
Severity | Issue | Source File / Package | Checkmarx Insight |
---|---|---|---|
Unpinned Actions Full Length Commit SHA | /build.yml: 143 | Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps... | |
Use_Of_Hardcoded_Password | /package/appserver/static/javascript/views/setup_page.js: 43 | Attack Vector |
Severity | Issue | Source File / Package |
---|---|---|
SSL_Verification_Bypass | /src/Splunk/SplunkApi.cs: 27 | |
Unpinned Actions Full Length Commit SHA | /build.yml: 148 | |
Use_Of_Hardcoded_Password | /app/bitwarden_event_logs/appserver/static/javascript/views/setup_page.js: 42 |
Highlights:
hash
field for Data Integrity Check - there is no need to calculate it, Splunk handles that automaticallyProduction ready TODO:
continuationToken
behaviorsrc/utils.py
functionget_logger
)Future: