cdklabs / cdk-cicd-wrapper

This repository contains the infrastructure as code to wrap your AWS CDK project with CI/CD around it.
https://cdklabs.github.io/cdk-cicd-wrapper/
Apache License 2.0
20 stars 5 forks source link

[BUG] (shellcheck scan fails on react app) #55

Open mishdane opened 2 months ago

mishdane commented 2 months ago

Describe the bug

audit:scan:security": "cdk-cicd security-scan --bandit --semgrep --shellcheck --ci" causing this scan failure =>

deps:python] npm run audit:deps:python exited with code 0 [scan:security] Error: ENAMETOOLONG: name too long, scandir '/Users/mishdane/vw/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/node_modules/app-al-ui/cdk.out/asset.289e058e0c31c0a7fc3f90f74f324e3d31013c01a1f7c8cbbfe493338bd1fdd2' [scan:security] at Object.readdirSync (node:fs:1527:3) [scan:security] at readdirWithFileTypes (/Users/mishdane/vw/app-al-ui/node_modules/@nodelib/fs.scandir/out/providers/sync.js:16:33) [scan:security] at Object.read (/Users/mishdane/vw/app-al-ui/node_modules/@nodelib/fs.scandir/out/providers/sync.js:10:16) [scan:security] at SyncReader.scandirSync [as _scandir] (/Users/mishdane/vw/app-al-ui/node_modules/@nodelib/fs.scandir/out/index.js:18:17)

Expected Behavior

scan should pass

Current Behavior

it is failing on --shellcheck

Reproduction Steps

just scan the reactapp project which uses this wrapper for pipeline.

"@cdklabs/cdk-cicd-wrapper": "0.1.5", "@cdklabs/cdk-cicd-wrapper-cli": "0.1.3", "aws-cdk": "2.142.1"

Possible Solution

No response

Additional Information/Context

No response

CDK CI/CD Wrapper version used

0.1.5

Environment details (OS name and version, etc.)

MacOS Sonoma 14.5

mishdane commented 2 months ago

I don't have any custom shell script on my project repo