-
Notifications
You must be signed in to change notification settings - Fork 1.6k
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Release: Merge release into master from: release/2.40.3 #11322
Conversation
….41.0-dev Release: Merge back 2.40.2 into bugfix from: master-into-bugfix/2.40.2-2.41.0-dev
* Ruff: Fix FURB189 on bugfix * Update dojo/api_v2/serializers.py Co-authored-by: Charles Neill <[email protected]> * fix * Update dojo/api_v2/serializers.py Co-authored-by: Charles Neill <[email protected]> * Update dojo/api_v2/serializers.py Co-authored-by: Charles Neill <[email protected]> * Update dojo/api_v2/serializers.py Co-authored-by: Charles Neill <[email protected]> * ruff --------- Co-authored-by: Charles Neill <[email protected]>
…11269) * change severity and active * Include UNKNOWN option * status, not gate * And add unittest * newline
* 🐛 fix trivyoperator tags * ruff * fix unittest * review * ruff
…1308) * fix case where description is none * switch to using queryName instead of id * add unittest
* Fix multi files parsing * Fix multi files parsing * Fix multi files parsing --------- Co-authored-by: Dmitry Maryushkin <[email protected]>
* add RLBA to vulnid * sha sum --------- Co-authored-by: Cody Maffucci <[email protected]>
DryRun Security SummaryThe pull request covers a wide range of updates and improvements to the DefectDojo application, focusing on enhancing the security analysis and reporting capabilities, including improvements to parsing and handling of security findings, deduplication and configuration of findings, addition of new test cases, and updates to the Helm chart and deployment configurations to improve the security and reliability of the application's infrastructure. Expand for full summarySummary: The code changes in this pull request cover a wide range of updates and improvements to the DefectDojo application, with a focus on enhancing the security analysis and reporting capabilities. The changes include:
Overall, these changes demonstrate a strong focus on improving the application's security posture and the ability to effectively identify, manage, and report on security vulnerabilities and compliance issues. The attention to detail and the comprehensive test coverage suggest a thoughtful and proactive approach to application security. Files Changed:
Code AnalysisWe ran
Riskiness🔴 Risk threshold exceeded. We've notified @mtesauro, @grendel513. |
Release triggered by
rossops