Kics #160
Annotations
1 error and 12 warnings
Kics / Kics Scan
KICS scan failed with exit code 50
|
Kics / Kics Scan
Node.js 16 actions are deprecated. Please update the following actions to use Node.js 20: actions/checkout@v3, github/codeql-action/upload-sarif@v2. For more information see: https://github.blog/changelog/2023-09-22-github-actions-transitioning-from-node-16-to-node-20/.
|
[HIGH] Passwords And Secrets - Generic Password:
ambari_blueprints/hostmappings-hdfs-yarn-hbase-ha.json#L3
Query to find passwords and secrets in infrastructure code.
|
[MEDIUM] Container Traffic Not Bound To Host Interface:
tests/docker/registry-docker-compose.yml#L20
Incoming container traffic should be bound to a specific host interface
|
[MEDIUM] Container Traffic Not Bound To Host Interface:
tests/docker/presto-dev-docker-compose.yml#L19
Incoming container traffic should be bound to a specific host interface
|
[MEDIUM] Container Traffic Not Bound To Host Interface:
tests/docker/elasticsearch-docker-compose.yml#L22
Incoming container traffic should be bound to a specific host interface
|
[MEDIUM] Container Traffic Not Bound To Host Interface:
tests/docker/apache-drill-docker-compose.yml#L34
Incoming container traffic should be bound to a specific host interface
|
[MEDIUM] Container Traffic Not Bound To Host Interface:
tests/docker/hadoop-docker-compose.yml#L22
Incoming container traffic should be bound to a specific host interface
|
[MEDIUM] Container Traffic Not Bound To Host Interface:
tests/docker/hbase-docker-compose.yml#L22
Incoming container traffic should be bound to a specific host interface
|
[MEDIUM] Container Traffic Not Bound To Host Interface:
tests/docker/presto-docker-compose.yml#L19
Incoming container traffic should be bound to a specific host interface
|
[MEDIUM] Container Traffic Not Bound To Host Interface:
tests/docker/solrcloud-docker-compose.yml#L24
Incoming container traffic should be bound to a specific host interface
|
[MEDIUM] Container Traffic Not Bound To Host Interface:
tests/docker/apache-drill-docker-compose.yml#L22
Incoming container traffic should be bound to a specific host interface
|
Kics / Kics Scan
CodeQL Action v2 will be deprecated on December 5th, 2024. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2024-01-12-code-scanning-deprecation-of-codeql-action-v2/
|