openshift / hive

API driven OpenShift cluster provisioning and management
Apache License 2.0
249 stars 237 forks source link

Snyk: Ignore azidentity #2439

Closed 2uasimojo closed 2 months ago

2uasimojo commented 2 months ago

Ignore https://security.snyk.io/vuln/SNYK-GOLANG-GITHUBCOMAZUREAZURESDKFORGOSDKAZIDENTITY-7246767

This is a Moderate CVE, fixed in mce-2.6 and later, thus deemed acceptable to disregard since it would be difficult to resolve.

HIVE-2532

2uasimojo commented 2 months ago

/cherry-pick mce-2.4 mce-2.3

openshift-cherrypick-robot commented 2 months ago

@2uasimojo: once the present PR merges, I will cherry-pick it on top of mce-2.4 in a new PR and assign it to you.

In response to [this](https://github.com/openshift/hive/pull/2439#issuecomment-2332107942): >/cherry-pick mce-2.4 mce-2.3 Instructions for interacting with me using PR comments are available [here](https://git.k8s.io/community/contributors/guide/pull-requests.md). If you have questions or suggestions related to my behavior, please file an issue against the [kubernetes-sigs/prow](https://github.com/kubernetes-sigs/prow/issues/new?title=Prow%20issue:) repository.
2uasimojo commented 2 months ago

/override "Red Hat Konflux / hive-mce-25-on-pull-request" /assign @lleshchi

openshift-ci[bot] commented 2 months ago

@2uasimojo: Overrode contexts on behalf of 2uasimojo: Red Hat Konflux / hive-mce-25-on-pull-request

In response to [this](https://github.com/openshift/hive/pull/2439#issuecomment-2332109727): >/override "Red Hat Konflux / hive-mce-25-on-pull-request" >/assign @lleshchi Instructions for interacting with me using PR comments are available [here](https://git.k8s.io/community/contributors/guide/pull-requests.md). If you have questions or suggestions related to my behavior, please file an issue against the [kubernetes-sigs/prow](https://github.com/kubernetes-sigs/prow/issues/new?title=Prow%20issue:) repository.
lleshchi commented 2 months ago

/lgtm

openshift-ci[bot] commented 2 months ago

[APPROVALNOTIFIER] This PR is APPROVED

This pull-request has been approved by: 2uasimojo, lleshchi

The full list of commands accepted by this bot can be found here.

The pull request process is described here

Needs approval from an approver in each of these files: - ~~[OWNERS](https://github.com/openshift/hive/blob/mce-2.5/OWNERS)~~ [2uasimojo,lleshchi] Approvers can indicate their approval by writing `/approve` in a comment Approvers can cancel approval by writing `/approve cancel` in a comment
openshift-ci[bot] commented 2 months ago

@2uasimojo: all tests passed!

Full PR test history. Your PR dashboard.

Instructions for interacting with me using PR comments are available [here](https://git.k8s.io/community/contributors/guide/pull-requests.md). If you have questions or suggestions related to my behavior, please file an issue against the [kubernetes-sigs/prow](https://github.com/kubernetes-sigs/prow/issues/new?title=Prow%20issue:) repository. I understand the commands that are listed [here](https://go.k8s.io/bot-commands).
openshift-cherrypick-robot commented 2 months ago

@2uasimojo: new pull request created: #2440

In response to [this](https://github.com/openshift/hive/pull/2439#issuecomment-2332107942): >/cherry-pick mce-2.4 mce-2.3 Instructions for interacting with me using PR comments are available [here](https://git.k8s.io/community/contributors/guide/pull-requests.md). If you have questions or suggestions related to my behavior, please file an issue against the [kubernetes-sigs/prow](https://github.com/kubernetes-sigs/prow/issues/new?title=Prow%20issue:) repository.