-
Notifications
You must be signed in to change notification settings - Fork 1.6k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Release: Merge back 2.40.2 into dev from: master-into-dev/2.40.2-2.41.0-dev #11287
Conversation
….41.0-dev Release: Merge back 2.40.1 into bugfix from: master-into-bugfix/2.40.1-2.41.0-dev
* 🎉 Uniform Trivy Operator K8s vulnids * sha sum * sha sum * bug fix * ruff * fix secretshandler * sha sum * ruff * fix * fix * fix unittests * fix * Update dojo/tools/trivy_operator/uniform_vulnid.py Co-authored-by: Charles Neill <[email protected]> * Update dojo/tools/trivy_operator/compliance_handler.py Co-authored-by: Charles Neill <[email protected]> * Update dojo/tools/trivy_operator/checks_handler.py Co-authored-by: Charles Neill <[email protected]> * Update dojo/tools/trivy_operator/vulnerability_handler.py Co-authored-by: Charles Neill <[email protected]> * update sha sum * update sha sum --------- Co-authored-by: Charles Neill <[email protected]>
* 🎉 Add DSA vulnid * update sha sum * retrigger unittest --------- Co-authored-by: Ross E Esposito <[email protected]>
* 🎉 All Trivy Operator findings in one json * ruff * sboms are not covered here * if only sboms are present, skip all
…CANNER): Add checker of values (#11244)
* 🔨 rework kubescape parser * update * fix unittest, ruff * update * fix * sha sum * retrigger unittest * Update dojo/tools/kubescape/parser.py Co-authored-by: Charles Neill <[email protected]> * review * retrigger unittests --------- Co-authored-by: Charles Neill <[email protected]>
…dt' (#11213) * #11210 prowler_v4.py Prowler v4.5.0 changed the 'event_time' key in finding with 'time_dt' * #11210 prowler_v4.py Prowler v4.5.0 changed the 'event_time' key in finding with 'time_dt' * Add tesst to support prowler version <4.5.0 * Return new-line * Update tests, clean up scans * Fix ruff * Rename some stuff --------- Co-authored-by: Cody Maffucci <[email protected]>
Release: Merge release into master from: release/2.40.2
DryRun Security SummaryThe pull request covers a wide range of updates and improvements to the DefectDojo application security platform, including enhancements to security tool integrations, improvements to configuration management and deployment, and additions and modifications to unit tests, all focused on ensuring the consistent and reliable handling of security vulnerability and compliance data, improving the integration and interoperability of DefectDojo with other security tools, enhancing the security of the DefectDojo application itself, and strengthening the testing and validation of the DefectDojo components. Expand for full summarySummary: The code changes in this pull request cover a wide range of updates and improvements to the DefectDojo application security platform, including:
From an application security perspective, the key areas of focus in these changes are:
Overall, the changes in this pull request demonstrate a strong commitment to improving the security capabilities and functionality of the DefectDojo application, which is an important tool for organizations managing their application security posture. Files Changed:
Code AnalysisWe ran
Riskiness🔴 Risk threshold exceeded. We've notified @mtesauro, @grendel513. |
This pull request has conflicts, please resolve those before we can evaluate the pull request. |
Conflicts have been resolved. A maintainer will review the pull request shortly. |
1 similar comment
Conflicts have been resolved. A maintainer will review the pull request shortly. |
Release triggered by
rossops