Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Check Logs 22.1 Week 1 #5483

Closed
2 tasks done
hcaofec opened this issue Jun 28, 2023 · 1 comment
Closed
2 tasks done

Check Logs 22.1 Week 1 #5483

hcaofec opened this issue Jun 28, 2023 · 1 comment
Assignees
Labels
Security: general General security concern or issue
Milestone

Comments

@hcaofec
Copy link
Contributor

hcaofec commented Jun 28, 2023

Log review needs to be completed per the Security Event Review Checklist (https://github.com/fecgov/FEC/wiki/Security-Event-Review-Checklist)

Ref: [Check Logs Innovation Week 3]
(#5469)

(Note: Copy above links in a browser to view the metrics)

@hcaofec hcaofec added the Security: general General security concern or issue label Jun 28, 2023
@hcaofec hcaofec added this to the Sprint 22.1 milestone Jun 28, 2023
@hcaofec hcaofec mentioned this issue Jun 28, 2023
3 tasks
@pkfec
Copy link
Contributor

pkfec commented Jul 6, 2023

FEC-CMS: 1
package.json: None
requirements.txt: 1
[Snyk High] (Django Regular Expression Denial of Service)[https://github.com/fecgov/fec-cms/issues/5791]

OPENFEC: 3
package.json: None

requirements.txt: 2
[Snyk High] (flask Information Exposure) [https://github.com//issues/5440]
[Snyk Medium] (requests Information Exposure) [https://github.com//issues/5459]

requirements-dev.txt: 1
[Snyk Medium] (Setuptools Regular Expression Denial of Service)[https://github.com//issues/5477]

FLYWAY: 2
[Snyk High] (Denial of Service)[https://github.com//issues/5482]
[Snyk Low] (Creation of Temporary File in Directory with Insecure Permissions[https://github.com//issues/5478]

FEC-EREGS: 1
package.json: None
requirements.txt: 1
[Snyk High] (Django Regular Expression Denial of Service)[https://github.com/fecgov/fec-eregs/issues/773]

FEC-PATTERN-LIBRARY:
package.json: None

Search logs:
User change: None

Cloud.gov Dashboard: 6 deployer accounts

Off-boarding: 0

Health check:
memory usage: ok
booting workers: ok

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Security: general General security concern or issue
Projects
None yet
Development

No branches or pull requests

2 participants