Skip to content

Vulnerability scan #236

Vulnerability scan

Vulnerability scan #236

Triggered via schedule August 6, 2024 07:06
Status Failure
Total duration 1m 45s
Artifacts

vulnerability.yml

on: schedule
dependency-review
5s
dependency-review
govulncheck
1m 34s
govulncheck
Fit to window
Zoom out
Zoom in

Annotations

11 errors
dependency-review
Dependency review is not supported on this repository. Please ensure that Dependency graph is enabled along with GitHub Advanced Security on private repositories, see https://github.com/chrisnegus/eks-anywhere/settings/security_analysis
govulncheck
images.ComputeImageDigestFromManifest calls http.Client.Do
govulncheck
s3.KeyExists calls s3.S3.HeadObject, which eventually calls http.Client.PostForm
govulncheck
filereader.ReadHttpFile calls http.Get
govulncheck
s3.KeyExists calls http.Head
govulncheck
s3.KeyExists calls s3.S3.HeadObject, which eventually calls http.Transport.CloseIdleConnections
govulncheck
s3.KeyExists calls s3.S3.HeadObject, which eventually calls http.Transport.RoundTrip
govulncheck
helm.init calls action.init, which eventually calls zip.NewReader
govulncheck
clients.CreateProdReleaseClients calls session.NewSessionWithOptions, which eventually calls netip.Addr.IsLoopback
govulncheck
clients.CreateProdReleaseClients calls session.NewSessionWithOptions, which eventually calls netip.Addr.IsMulticast
govulncheck
Process completed with exit code 3.