Vulnerability scan #236
vulnerability.yml
on: schedule
dependency-review
5s
govulncheck
1m 34s
Annotations
11 errors
dependency-review
Dependency review is not supported on this repository. Please ensure that Dependency graph is enabled along with GitHub Advanced Security on private repositories, see https://github.com/chrisnegus/eks-anywhere/settings/security_analysis
|
govulncheck
images.ComputeImageDigestFromManifest calls http.Client.Do
|
govulncheck
s3.KeyExists calls s3.S3.HeadObject, which eventually calls http.Client.PostForm
|
govulncheck
filereader.ReadHttpFile calls http.Get
|
govulncheck
s3.KeyExists calls http.Head
|
govulncheck
s3.KeyExists calls s3.S3.HeadObject, which eventually calls http.Transport.CloseIdleConnections
|
govulncheck
s3.KeyExists calls s3.S3.HeadObject, which eventually calls http.Transport.RoundTrip
|
govulncheck
helm.init calls action.init, which eventually calls zip.NewReader
|
govulncheck
clients.CreateProdReleaseClients calls session.NewSessionWithOptions, which eventually calls netip.Addr.IsLoopback
|
govulncheck
clients.CreateProdReleaseClients calls session.NewSessionWithOptions, which eventually calls netip.Addr.IsMulticast
|
govulncheck
Process completed with exit code 3.
|