Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

fix: remove management permission requirement #261

Merged
merged 1 commit into from
Jun 18, 2024

Conversation

dawidsowardx
Copy link
Contributor

No description provided.

Copy link

Phylum OSS Supply Chain Risk Analysis - INCOMPLETE WITH FAILURE

The analysis contains 8 package(s) Phylum has not yet processed,
preventing a complete risk analysis. Phylum is processing these
packages currently and should complete soon.
Please wait for up to 30 minutes, then re-run the analysis.

This repository analyzes the risk of new dependencies. An
administrator of this repository has set requirements via Phylum policy.

If you see this comment, one or more dependencies have failed Phylum's risk analysis.

Package: braces@3.0.2 failed.

braces@3.0.2 is vulnerable to Uncontrolled resource consumption

Risk Domain: Software Vulnerability
Risk Level: high

Reason: risk level cannot exceed medium

Package: ip@1.1.8 failed.

ip@1.1.8 is vulnerable to ip SSRF improper categorization

Risk Domain: Software Vulnerability
Risk Level: high

Reason: risk level cannot exceed medium

Package: ws@6.2.2 failed.

ws@6.2.2 is vulnerable to ws affected by a DoS when handling a request with many HTTP headers

Risk Domain: Software Vulnerability
Risk Level: high

Reason: risk level cannot exceed medium

Package: ws@7.5.9 failed.

ws@7.5.9 is vulnerable to ws affected by a DoS when handling a request with many HTTP headers

Risk Domain: Software Vulnerability
Risk Level: high

Reason: risk level cannot exceed medium

Package: ws@8.13.0 failed.

ws@8.13.0 is vulnerable to ws affected by a DoS when handling a request with many HTTP headers

Risk Domain: Software Vulnerability
Risk Level: high

Reason: risk level cannot exceed medium

Package: yaml@2.3.4 failed.

yaml@2.3.4 is vulnerable to Uncaught Exception

Risk Domain: Software Vulnerability
Risk Level: high

Reason: risk level cannot exceed medium

View this project in the Phylum UI

Copy link

sonarcloud bot commented Jun 18, 2024

Quality Gate Passed Quality Gate passed

Issues
0 New issues
0 Accepted issues

Measures
0 Security Hotspots
No data about Coverage
No data about Duplication

See analysis details on SonarCloud

@dawidsowardx dawidsowardx merged commit b302d41 into develop Jun 18, 2024
12 of 13 checks passed
@dawidsowardx dawidsowardx deleted the remove-management-permission branch June 18, 2024 20:35
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants