Skip to content

🎉 add mozilla foundation sec advice to vulnid#14703

Merged
rossops merged 1 commit intoDefectDojo:bugfixfrom
manuel-sommer:mozilla_vulnid
Apr 20, 2026
Merged

🎉 add mozilla foundation sec advice to vulnid#14703
rossops merged 1 commit intoDefectDojo:bugfixfrom
manuel-sommer:mozilla_vulnid

Conversation

@manuel-sommer
Copy link
Copy Markdown
Contributor

No description provided.

@manuel-sommer manuel-sommer marked this pull request as ready for review April 16, 2026 06:53
@github-actions github-actions Bot added settings_changes Needs changes to settings.py based on changes in settings.dist.py included in this PR ui labels Apr 16, 2026
@dryrunsecurity
Copy link
Copy Markdown

DryRun Security

This pull request makes a sensitive edit to dojo/templatetags/display_tags.py that triggered the configured codepaths scanner; sensitive file paths and allowed authors can be set in .dryrunsecurity.yaml to address this finding. Please review the change for security implications or update the configuration if this edit is allowed.

🔴 Configured Codepaths Edit in dojo/templatetags/display_tags.py (drs_dc379970)
Vulnerability Configured Codepaths Edit
Description Sensitive edits detected for this file. Sensitive file paths and allowed authors can be configured in .dryrunsecurity.yaml.

We've notified @mtesauro.


Comment to provide feedback on these findings.

Report false positive: @dryrunsecurity fp [FINDING ID] [FEEDBACK]
Report low-impact: @dryrunsecurity nit [FINDING ID] [FEEDBACK]

Example: @dryrunsecurity fp drs_90eda195 This code is not user-facing

All finding details can be found in the DryRun Security Dashboard.

@Maffooch Maffooch requested a review from Jino-T April 17, 2026 04:46
@Maffooch Maffooch added this to the 2.57.2 milestone Apr 17, 2026
Copy link
Copy Markdown
Contributor

@mtesauro mtesauro left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Approved

@rossops rossops merged commit a61ceeb into DefectDojo:bugfix Apr 20, 2026
156 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

settings_changes Needs changes to settings.py based on changes in settings.dist.py included in this PR ui

Projects

None yet

Development

Successfully merging this pull request may close these issues.

6 participants