Skip to content

[Snyk] Security upgrade gitpython from 2.1.15 to 3.1.35 #193

[Snyk] Security upgrade gitpython from 2.1.15 to 3.1.35

[Snyk] Security upgrade gitpython from 2.1.15 to 3.1.35 #193

Triggered via pull request September 9, 2023 18:15
Status Success
Total duration 1m 11s
Artifacts

checkov.yaml

on: pull_request
Checkov  /  Checkov Scan
1m 1s
Checkov / Checkov Scan
Fit to window
Zoom out
Zoom in

Annotations

10 errors and 1 warning
Checkov / Checkov Scan: .github/workflows/python3.8.yaml#L38
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan: .github/workflows/alpine.yaml#L61
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan: .github/workflows/semgrep-cloud.yaml#L38
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan: .github/workflows/debian_11.yaml#L61
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan: .github/workflows/python3.10.yaml#L38
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan: .github/workflows/python3.9.yaml#L38
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan: .github/workflows/mac_12.yaml#L61
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan: .github/workflows/docker_pytools_ubuntu.yaml#L102
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan: .github/workflows/docker_pytools_alpine.yaml#L102
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan: .github/workflows/mac_11.yaml#L61
CKV_GHA_7: "The build output cannot be affected by user parameters other than the build entry point and the top-level source location. GitHub Actions workflow_dispatch inputs MUST be empty. "
Checkov / Checkov Scan
The following actions uses node12 which is deprecated and will be forced to run on node16: actions/setup-python@v1. For more info: https://github.blog/changelog/2023-06-13-github-actions-all-actions-will-run-on-node16-instead-of-node12-by-default/