updated config #1704
Annotations
2 errors and 10 warnings
Kics / Kics Scan
CodeQL Action major versions v1 and v2 have been deprecated. Please update all occurrences of the CodeQL Action in your workflow files to v3. For more information, see https://github.blog/changelog/2025-01-10-code-scanning-codeql-action-v2-is-now-deprecated/
|
Kics / Kics Scan
KICS scan failed with exit code 50
|
[MEDIUM] Container Capabilities Unrestricted:
docker-compose/circleci.yml#L32
Some capabilities are not needed in certain (or any) containers. Make sure that you only add capabilities that your container needs. Drop unnecessary capabilities as well.
|
[MEDIUM] Container Capabilities Unrestricted:
docker-compose/octopus-deploy.yml#L28
Some capabilities are not needed in certain (or any) containers. Make sure that you only add capabilities that your container needs. Drop unnecessary capabilities as well.
|
[MEDIUM] Container Capabilities Unrestricted:
docker-compose/gocd.yml#L36
Some capabilities are not needed in certain (or any) containers. Make sure that you only add capabilities that your container needs. Drop unnecessary capabilities as well.
|
[HIGH] Privileged Containers Enabled:
docker-compose/concourse.yml#L35
Privileged containers should be used with extreme caution, they have all of the capabilities that the linux kernel offers for docker.
|
[HIGH] Passwords And Secrets - Generic Password:
docker-compose/wordpress.yml#L27
Query to find passwords and secrets in infrastructure code.
|
[HIGH] Passwords And Secrets - Generic Password:
docker-compose/concourse.yml#L47
Query to find passwords and secrets in infrastructure code.
|
[HIGH] Passwords And Secrets - Generic Password:
docker-compose/concourse.yml#L27
Query to find passwords and secrets in infrastructure code.
|
[HIGH] Passwords And Secrets - Generic Password:
docker-compose/keycloak.yml#L38
Query to find passwords and secrets in infrastructure code.
|
[HIGH] Passwords And Secrets - Generic Password:
docker-compose/concourse.yml#L44
Query to find passwords and secrets in infrastructure code.
|
[HIGH] Passwords And Secrets - Generic Password:
docker-compose/wordpress.yml#L37
Query to find passwords and secrets in infrastructure code.
|