Weekly security scan #47
Annotations
50 errors and 5 warnings
Trivy (release-1.8)
session.GetOrCreate calls rest.Client.Session, which eventually calls http.Client.Do
|
Trivy (release-1.8)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls http.Client.Get
|
Trivy (release-1.8)
session.GetOrCreate calls govmomi.Client.Logout, which eventually calls http.Transport.CloseIdleConnections
|
Trivy (release-1.8)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsLoopback
|
Trivy (release-1.8)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsMulticast
|
Trivy (release-1.8)
util.NewKubeClient calls kubernetes.NewForConfig, which eventually calls http2.ConfigureTransports
|
Trivy (release-1.8)
controllers.GetSupervisorAPIServerAddress calls http2.ConnectionError.Error
|
Trivy (release-1.8)
vmware.ClusterReconciler.VSphereMachineToCluster calls fmt.Sprintf, which eventually calls http2.ErrCode.String
|
Trivy (release-1.8)
vmware.ClusterReconciler.VSphereMachineToCluster calls fmt.Sprintf, which eventually calls http2.FrameHeader.String
|
Trivy (release-1.8)
vmware.ClusterReconciler.VSphereMachineToCluster calls fmt.Sprintf, which eventually calls http2.FrameType.String
|
Trivy (release-1.6)
openapi.APIClient.callAPI calls http.Client.Do
|
Trivy (release-1.6)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls http.Client.Get
|
Trivy (release-1.6)
session.GetOrCreate calls govmomi.Client.Logout, which eventually calls http.Transport.CloseIdleConnections
|
Trivy (release-1.6)
openapi.APIClient.callAPI calls httputil.DumpRequestOut, which calls http.Transport.RoundTrip
|
Trivy (release-1.6)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsLoopback
|
Trivy (release-1.6)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsMulticast
|
Trivy (release-1.6)
util.NewKubeClient calls kubernetes.NewForConfig, which eventually calls http2.ConfigureTransports
|
Trivy (release-1.6)
openapi.HAProxyConfigurationManagementApiService.ReplaceTCPResponseRule calls http2.ConnectionError.Error
|
Trivy (release-1.7)
openapi.APIClient.callAPI calls http.Client.Do
|
Trivy (release-1.6)
openapi.HAProxyConfigurationManagementApiService.ReplaceTCPResponseRule calls fmt.Sprintf, which eventually calls http2.ErrCode.String
|
Trivy (release-1.6)
openapi.HAProxyConfigurationManagementApiService.ReplaceTCPResponseRule calls fmt.Sprintf, which eventually calls http2.FrameHeader.String
|
Trivy (release-1.7)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls http.Client.Get
|
Trivy (release-1.7)
session.GetOrCreate calls govmomi.Client.Logout, which eventually calls http.Transport.CloseIdleConnections
|
Trivy (release-1.7)
openapi.APIClient.callAPI calls httputil.DumpRequestOut, which calls http.Transport.RoundTrip
|
Trivy (release-1.7)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsLoopback
|
Trivy (release-1.7)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsMulticast
|
Trivy (release-1.7)
util.NewKubeClient calls kubernetes.NewForConfig, which eventually calls http2.ConfigureTransports
|
Trivy (release-1.7)
openapi.HAProxyConfigurationManagementApiService.ReplaceTCPResponseRule calls http2.ConnectionError.Error
|
Trivy (release-1.7)
openapi.HAProxyConfigurationManagementApiService.ReplaceTCPResponseRule calls fmt.Sprintf, which eventually calls http2.ErrCode.String
|
Trivy (release-1.7)
openapi.HAProxyConfigurationManagementApiService.ReplaceTCPResponseRule calls fmt.Sprintf, which eventually calls http2.FrameHeader.String
|
Trivy (release-1.5)
openapi.APIClient.callAPI calls http.Client.Do
|
Trivy (release-1.5)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls http.Client.Get
|
Trivy (release-1.5)
session.GetOrCreate calls govmomi.Client.Logout, which eventually calls http.Transport.CloseIdleConnections
|
Trivy (release-1.5)
openapi.APIClient.callAPI calls httputil.DumpRequestOut, which calls http.Transport.RoundTrip
|
Trivy (release-1.5)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsLoopback
|
Trivy (release-1.5)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsMulticast
|
Trivy (release-1.5)
util.NewKubeClient calls kubernetes.NewForConfig, which eventually calls http2.ConfigureTransports
|
Trivy (release-1.5)
openapi.HAProxyConfigurationManagementApiService.ReplaceTCPResponseRule calls http2.ConnectionError.Error
|
Trivy (release-1.5)
openapi.HAProxyConfigurationManagementApiService.ReplaceTCPResponseRule calls fmt.Sprintf, which eventually calls http2.ErrCode.String
|
Trivy (release-1.5)
openapi.HAProxyConfigurationManagementApiService.ReplaceTCPResponseRule calls fmt.Sprintf, which eventually calls http2.FrameHeader.String
|
Trivy (main)
session.GetOrCreate calls rest.Client.Session, which eventually calls http.Client.Do
|
Trivy (main)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls http.Client.Get
|
Trivy (main)
session.GetOrCreate calls govmomi.Client.Logout, which eventually calls http.Transport.CloseIdleConnections
|
Trivy (main)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsLoopback
|
Trivy (main)
helpers.NewTestEnvironment calls envtest.Environment.Start, which eventually calls netip.Addr.IsMulticast
|
Trivy (main)
util.NewKubeClient calls kubernetes.NewForConfig, which eventually calls http2.ConfigureTransports
|
Trivy (main)
controllers.serviceDiscoveryReconciler.ReconcileNormal calls http2.ConnectionError.Error
|
Trivy (main)
vmware.ClusterReconciler.VSphereMachineToCluster calls fmt.Sprintf, which eventually calls http2.ErrCode.String
|
Trivy (main)
vmware.ClusterReconciler.VSphereMachineToCluster calls fmt.Sprintf, which eventually calls http2.FrameHeader.String
|
Trivy (main)
vmware.ClusterReconciler.VSphereMachineToCluster calls fmt.Sprintf, which eventually calls http2.FrameType.String
|
Trivy (release-1.8)
The following actions uses Node.js version which is deprecated and will be forced to run on node20: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
Trivy (release-1.6)
The following actions uses Node.js version which is deprecated and will be forced to run on node20: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
Trivy (release-1.7)
The following actions uses Node.js version which is deprecated and will be forced to run on node20: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
Trivy (release-1.5)
The following actions uses Node.js version which is deprecated and will be forced to run on node20: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|
Trivy (main)
The following actions uses Node.js version which is deprecated and will be forced to run on node20: actions/setup-go@93397bea11091df50f3d7e59dc26a7711a8bcfbe. For more info: https://github.blog/changelog/2024-03-07-github-actions-all-actions-will-run-on-node20-instead-of-node16-by-default/
|