Skip to content

Conversation

jbrotsos
Copy link
Contributor

No description provided.

@jbrotsos
Copy link
Contributor Author

Logo
Checkmarx One – Scan Summary & Details399727a6-60e3-4091-b110-65736084e699

Policy Management Violations - Pull/merge request blocked

Policy Name Rule(s) Break Build
BNS Break New vulnerability of High severity level detected true

New Issues

Severity Issue Source File / Package Checkmarx Insight
HIGH Missing User Instruction /Dockerfile: [1](https://github.com/CxOneOrg/bns-break/blob/jbrotsos-patch-4//Dockerfile# L1) A user should be specified in the dockerfile, otherwise the image will run as root
MEDIUM Apt Get Install Pin Version Not Defined /Dockerfile: [5](https://github.com/CxOneOrg/bns-break/blob/jbrotsos-patch-4//Dockerfile# L5) When installing a package, its pin version should be defined
LOW Healthcheck Instruction Missing /Dockerfile: [1](https://github.com/CxOneOrg/bns-break/blob/jbrotsos-patch-4//Dockerfile# L1) Ensure that HEALTHCHECK is being used. The HEALTHCHECK instruction tells Docker how to test a container to check that it is still working

Fixed Issues

Severity Issue Source File / Package
HIGH CVE-2024-4068 Npm-braces-3.0.2

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant