bitwarden / splunk

Splunk app for reporting Bitwarden event logs.
GNU General Public License v3.0
14 stars 8 forks source link

[DEVOPS-1803] - Update Failure Job #30

Closed Eeebru closed 8 months ago

Eeebru commented 8 months ago
bitwarden-bot commented 8 months ago

Logo Checkmarx One – Scan Summary & Detailsd692b005-47e3-436e-b398-203dc3f09067

New Issues

Severity Issue Source File / Package Checkmarx Insight
MEDIUM SSL_Verification_Bypass /src/Splunk/SplunkApi.cs: 27 Attack Vector
MEDIUM Unpinned Actions Full Length Commit SHA /build.yml: 148 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
LOW Use_Of_Hardcoded_Password /app/bitwarden_event_logs/appserver/static/javascript/views/setup_page.js: 44 Attack Vector
LOW Use_Of_Hardcoded_Password /app/bitwarden_event_logs/appserver/static/javascript/views/setup_page.js: 43 Attack Vector
LOW Use_Of_Hardcoded_Password /app/bitwarden_event_logs/appserver/static/javascript/views/setup_page.js: 42 Attack Vector
LOW Use_Of_Hardcoded_Password /app/bitwarden_event_logs/appserver/static/javascript/views/storage_passwords.js: 45 Attack Vector
LOW Use_Of_Hardcoded_Password /app/bitwarden_event_logs/appserver/static/javascript/views/storage_passwords.js: 45 Attack Vector