Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Check logs PI 10.3 week 1 #3989

Closed
jason-upchurch opened this issue Oct 2, 2019 · 1 comment
Closed

Check logs PI 10.3 week 1 #3989

jason-upchurch opened this issue Oct 2, 2019 · 1 comment
Assignees
Labels
Security: general General security concern or issue
Milestone

Comments

@jason-upchurch
Copy link
Contributor

jason-upchurch commented Oct 2, 2019

Log review needs to be completed for PI 10.3 week 1 per the Security Event Review Checklist (https://github.com/fecgov/FEC/wiki/Security-Event-Review-Checklist)

Create check logs tickets for the next sprint

@jason-upchurch jason-upchurch added the Security: general General security concern or issue label Oct 2, 2019
@jason-upchurch jason-upchurch added this to the Sprint 10.3 milestone Oct 2, 2019
@fecjjeng
Copy link
Contributor

fecjjeng commented Oct 9, 2019

FEC-CMS: Total 0
package.json: 0
requirements.txt: 0

OPENFEC: Total 0
package.json: 0
requirements.txt: 0
data/flyway/build.gradle: 0 High, 0 medium

    There are 1 High and 1 medium vulnerability shown on Synk for data/flyway/build.gradle. 
    However, both High and Medium vulnerability are on mysql:mysql-connector-java
    **Vulnerable module: mysql:mysql-connector-java**
    we do not use mysql:mysql-connector-java, in data/flyway/build.gradle file, it is specified in the "**exclude group**"

FEC-EREGS: Total 0
package.json: 0
requirements.txt: 0

FEC-PATTERN-LIBRARY: Total 0
package.json: 0

Users changed this week or last:
Search kibana logs
last week:
No users created or deleted.
this week:
No users created or deleted.

Cloud.gov Dashboard: 9 deployer accounts, same as last week.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
Security: general General security concern or issue
Projects
None yet
Development

No branches or pull requests

2 participants