Skip to content

Perl analysis with zarn - #1047

Merged
m-1-k-3 merged 22 commits into
e-m-b-a:masterfrom
m-1-k-3:perl_scanning
Feb 26, 2024
Merged

Perl analysis with zarn#1047
m-1-k-3 merged 22 commits into
e-m-b-a:masterfrom
m-1-k-3:perl_scanning

Conversation

@m-1-k-3

@m-1-k-3 m-1-k-3 commented Feb 22, 2024

Copy link
Copy Markdown
Member
  • What kind of change does this PR introduce? (Bug fix, feature, docs update, ...)

Feature

  • What is the current behavior? (You can also link to an open issue here)

No perl code analysis integrated

  • What is the new behavior (if this is a feature change)? If possible add a screenshot.

Using zarn for code analysis - https://github.com/htrgouvea/zarn and https://heitorgouvea.me/2023/03/19/static-security-analysis-tool-perl

image

Important: This PR needs an update of the EMBA docker base image.

Important: We currently use commit 009331c in the EMBA base image. This results in more accurate line numbers but we are running into a higher false positive rate. See also htrgouvea/zarn#37 (comment)

@m-1-k-3
m-1-k-3 marked this pull request as draft February 22, 2024 14:46
@m-1-k-3 m-1-k-3 added enhancement New feature or request in progress Someone is working on this Core modules (Sxx) The core scanning modules (Sxx modules) EMBA labels Feb 22, 2024
@m-1-k-3
m-1-k-3 marked this pull request as ready for review February 25, 2024 09:35
@m-1-k-3

m-1-k-3 commented Feb 26, 2024

Copy link
Copy Markdown
Member Author

Base image updated ... will mergen now

@m-1-k-3
m-1-k-3 merged commit 055ba07 into e-m-b-a:master Feb 26, 2024
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Core modules (Sxx) The core scanning modules (Sxx modules) EMBA enhancement New feature or request in progress Someone is working on this

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant