Skip to content

[BRE-831] migrate secrets AKV#124

Merged
pixman20 merged 6 commits into
mainfrom
BRE-831-migrate-secrets-akv
Jul 18, 2025
Merged

[BRE-831] migrate secrets AKV#124
pixman20 merged 6 commits into
mainfrom
BRE-831-migrate-secrets-akv

Conversation

@pixman20
Copy link
Copy Markdown
Contributor

@pixman20 pixman20 commented Jun 13, 2025

🎟️ Tracking

BRE-831

📔 Objective

Updating to use Azure Key Vault Secrets in place of GitHub secrets.
All GitHub secrets have been migrated to the repository's respective Key Vault.
Azure Service Principals have been updated to use Managed Identities with OIDC.

@github-actions
Copy link
Copy Markdown

github-actions Bot commented Jun 13, 2025

Logo
Checkmarx One – Scan Summary & Details20ace6db-4e19-4452-8a1d-eb295514b9e0

New Issues (3)

Checkmarx found the following issues in this Pull Request

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2025-48976 Maven-commons-fileupload:commons-fileupload-1.4
detailsRecommended version: 1.6.0
Description: Allocation of resources for multipart headers with insufficient limits enabled a Denial of Service (DoS) vulnerability in Apache Commons FileUpload...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: JwuyXpcL7f3OsZrMgb1nY2tAq6SVgBHGQJar22Rq5kY%3D
Vulnerable Package
HIGH CVE-2025-48988 Maven-org.apache.tomcat.embed:tomcat-embed-core-10.1.12
detailsRecommended version: 10.1.42
Description: Allocation of Resources Without Limits or Throttling vulnerability in Apache Tomcat. This issue affects Apache Tomcat versions 9.0.0.M1 through 9....
Attack Vector: NETWORK
Attack Complexity: LOW

ID: KN4JQmNLzjKOGMLzJ8mosLZC5Mhe%2BFSR1350DQj5xZE%3D
Vulnerable Package
MEDIUM CVE-2025-49125 Maven-org.apache.tomcat.embed:tomcat-embed-core-10.1.12
detailsRecommended version: 10.1.42
Description: Authentication Bypass Using an Alternate Path or Channel vulnerability in Apache Tomcat. When using `PreResources` or `PostResources` mounted other...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: vpxKJrfOVegubzY4vhDVQU05%2BZ14LL2hQ3wkK226YR8%3D
Vulnerable Package

@pixman20 pixman20 self-assigned this Jun 27, 2025
@pixman20 pixman20 marked this pull request as ready for review June 27, 2025 22:04
@pixman20 pixman20 requested a review from a team as a code owner June 27, 2025 22:04
@pixman20 pixman20 requested a review from abergs July 11, 2025 17:34
@pixman20 pixman20 merged commit 73b935c into main Jul 18, 2025
7 checks passed
@pixman20 pixman20 deleted the BRE-831-migrate-secrets-akv branch July 18, 2025 17:15
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants