chore(deps): update dependabot/fetch-metadata action to v3 #237
security_scanning.yml
on: pull_request
setup-matrix
5s
Matrix: scan_ci_container
Annotations
4 warnings
|
Scan amd64 CI container
Failed minimum severity level. Found vulnerabilities with level 'medium' or higher
|
|
Sensitive data should not be used in the ARG or ENV commands:
openvoxserver/Containerfile#L38
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "INTERMEDIATE_CA_KEY")
More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
|
|
Scan arm64 CI container
Failed minimum severity level. Found vulnerabilities with level 'medium' or higher
|
|
Sensitive data should not be used in the ARG or ENV commands:
openvoxserver/Containerfile#L38
SecretsUsedInArgOrEnv: Do not use ARG or ENV instructions for sensitive data (ENV "INTERMEDIATE_CA_KEY")
More info: https://docs.docker.com/go/dockerfile/rule/secrets-used-in-arg-or-env/
|
Artifacts
Produced during runtime
| Name | Size | Digest | |
|---|---|---|---|
|
OpenVoxProject~container-openvoxserver~0FLQLB.dockerbuild
|
65.6 KB |
sha256:9863901e8ce2fdff2bb5efdc4a89cc24a2bc4648fc650d0a7c3155f0790a634c
|
|
|
OpenVoxProject~container-openvoxserver~3LERLD.dockerbuild
|
64.5 KB |
sha256:9b3688186c7be5110beefb8e9f357ceccc89d07d89c5494ac9ce2639ffb281fe
|
|