camptocamp / c2cgeoportal

c2cgeoportal application
http://geomapfish.org
Other
64 stars 46 forks source link

Audit Snyk check/fix 2.8 #11251

Closed geo-ghci-int[bot] closed 1 month ago

geo-ghci-int[bot] commented 1 month ago

⠋ Running snyk test for /tmp/tmpt6st3j1c/c2cgeoportal ► Running snyk test for /tmp/tmpt6st3j1c/c2cgeoportal

✔ Looking for supported Python items

✔ Looking for supported Python items ⠋ Processing 3 pyproject.toml items⠋ Processing 7 requirements.txt items✔ Processed 7 requirements.txt items

Successful fixes:

docker/config/pyproject.toml ✔ Upgraded fiona from 1.9.6 to 1.10b2

Unresolved items:

doc/pyproject.toml ✖ There is no actionable remediation to apply

pyproject.toml x Failed to pin certifi from 2023.7.22 to 2024.7.4 Reason: No fixes could be applied. Tip: Try running poetry add certifi==2024.7.4 fiona==1.10b2 zipp==3.19.1 x Failed to upgrade fiona from 1.9.6 to 1.10b2 Reason: No fixes could be applied. Tip: Try running poetry add certifi==2024.7.4 fiona==1.10b2 zipp==3.19.1 x Failed to pin zipp from 3.12.0 to 3.19.1 Reason: No fixes could be applied. Tip: Try running poetry add certifi==2024.7.4 fiona==1.10b2 zipp==3.19.1

admin/package-lock.json ✖ npm is not supported. Summary: 3 items were not fixed 1 items were successfully fixed 4 items were not vulnerable

19 issues: 6 Medium | 13 Low 5 issues are fixable 1 issues were successfully fixed

Tip: Re-run in debug mode to see more information: DEBUG=*snyk* . If the issue persists contact support@snyk.io