Skip to content

Release: Merge back 2.39.3 into bugfix from: master-into-bugfix/2.39.3-2.40.0-dev#11145

Merged
rossops merged 3 commits intobugfixfrom
master-into-bugfix/2.39.3-2.40.0-dev
Oct 28, 2024
Merged

Release: Merge back 2.39.3 into bugfix from: master-into-bugfix/2.39.3-2.40.0-dev#11145
rossops merged 3 commits intobugfixfrom
master-into-bugfix/2.39.3-2.40.0-dev

Conversation

@github-actions
Copy link
Copy Markdown
Contributor

Release triggered by rossops

DefectDojo release bot and others added 3 commits October 28, 2024 14:59
@dryrunsecurity
Copy link
Copy Markdown

dryrunsecurity Bot commented Oct 28, 2024

DryRun Security Summary

The changes in this pull request are minor version updates or bug fixes that do not appear to introduce any significant security concerns, but it is crucial to review any changes to the application's infrastructure and dependencies to ensure the security of the deployed application.

Expand for full summary

Summary:

The changes in this pull request are minor version updates or bug fixes that do not appear to introduce any significant security concerns. The updates include:

  1. Updating the version number of the dojo/__init__.py file from 2.39.2 to 2.39.3. This is a routine maintenance task and is not expected to impact the application's security.
  2. Updating the version of the Helm chart for the DefectDojo application from 1.6.156-dev to 1.6.157-dev. While this is also a minor version update, it's important to consider the security of the overall application, including any dependencies and configuration changes.

As an application security engineer, I would recommend approving these changes, as long as the overall application security posture is maintained and there are no other pressing security issues identified. However, it's crucial to review any changes to the application's infrastructure and dependencies to ensure the security of the deployed application.

Files Changed:

  1. dojo/__init__.py: This file is the Python package's initialization file, and the changes update the version number from 2.39.2 to 2.39.3. This is a routine maintenance task and does not introduce any significant security concerns.
  2. helm/defectdojo/Chart.yaml: This file is the Helm chart for the DefectDojo application, and the changes update the version from 1.6.156-dev to 1.6.157-dev. While this is a minor version update, it's important to review any changes to the Helm chart's dependencies and configuration settings to ensure the security of the deployed application.

Code Analysis

We ran 9 analyzers against 2 files and 0 analyzers had findings. 9 analyzers had no findings.

Riskiness

🟢 Risk threshold not exceeded.

View PR in the DryRun Dashboard.

@rossops rossops closed this Oct 28, 2024
@rossops rossops reopened this Oct 28, 2024
@github-actions github-actions Bot added the helm label Oct 28, 2024
@rossops rossops merged commit 7d34530 into bugfix Oct 28, 2024
@rossops rossops deleted the master-into-bugfix/2.39.3-2.40.0-dev branch October 28, 2024 16:08
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant