Skip to content

[SCB-Bot] Upgraded gitleaks from v8.6.1 to v8.8.7#1207

Closed
secureCodeBoxBot wants to merge 1 commit intomainfrom
dependencies/upgrading-gitleaks-to-v8.8.7
Closed

[SCB-Bot] Upgraded gitleaks from v8.6.1 to v8.8.7#1207
secureCodeBoxBot wants to merge 1 commit intomainfrom
dependencies/upgrading-gitleaks-to-v8.8.7

Conversation

@secureCodeBoxBot
Copy link
Copy Markdown
Contributor

This is an automated Pull Request by the SCB-Bot. It upgrades gitleaks from v8.6.1 to v8.8.7

Release changes : here

Signed-off-by: secureCodeBoxBot <securecodebox@iteratec.com>
@secureCodeBoxBot secureCodeBoxBot added dependencies Pull requests that update a dependency file scanner Implement or update a security scanner labels Jun 3, 2022
@github-actions
Copy link
Copy Markdown

github-actions bot commented Jun 3, 2022

MegaLinter status: ✅ SUCCESS

Descriptor Linter Files Fixed Errors Elapsed time
✅ GIT git_diff yes no 0.11s
✅ SPELL misspell 1 0 0.05s
✅ YAML prettier 1 0 0.85s
✅ YAML v8r 1 0 2.13s
✅ YAML yamllint 1 0 0.15s

See errors details in artifact MegaLinter reports on CI Job page
Set VALIDATE_ALL_CODEBASE: true in mega-linter.yml to validate all sources, not only the diff

@Ilyesbdlala
Copy link
Copy Markdown
Member

The integration test currently fails due to gitleaks not finding any leaks.
image
This should not happen since we include a leaked private key in a mounted volume as seen here https://github.com/secureCodeBox/secureCodeBox/blob/main/scanners/gitleaks/integration-tests/gitleaks.test.js#L37-L44

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file scanner Implement or update a security scanner

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants