UNCLASSIFIED - NO CUI

chore(findings): f18-navy-boeing/osee/osee-postgres

Summary

f18-navy-boeing/osee/osee-postgres has 14 new findings discovered during continuous monitoring.

id source package
CVE-2021-30468 anchore_cve cxf-3.3.10
CVE-2021-30468 anchore_cve cxf-3.3.10
CVE-2021-30468 anchore_cve cxf-3.3.10
CVE-2021-30468 anchore_cve cxf-3.3.10
CVE-2021-30468 anchore_cve cxf-3.3.10
CVE-2021-30468 anchore_cve cxf-3.3.10
CVE-2021-30468 anchore_cve cxf-3.3.10
CVE-2021-30468 anchore_cve cxf-3.3.10
CVE-2021-30468 anchore_cve cxf-3.3.10
CVE-2021-30468 anchore_cve cxf-3.3.10
GHSA-m6cp-vxjx-65j6 anchore_cve jetty-server-9.4.39.v20210325
CVE-2021-30468 twistlock_cve org.apache.cxf_cxf-core-3.3.10
CVE-2021-28169 twistlock_cve org.eclipse.jetty_jetty-io-9.4.39.v20210325
CVE-2021-34428 twistlock_cve org.eclipse.jetty_jetty-io-9.4.39.v20210325

More information can be found in the failed pipeline located here: https://repo1.dso.mil/dsop/f18-navy-boeing/osee/osee-postgres/-/jobs/4613013

Definition of Done

Justifications:

  • All findings have been justified
  • Justifications have been provided to the container hardening team

Approval Process:

  • Findings Approver has reviewed and approved all justifications
  • Approval request has been sent to Authorizing Official
  • Approval request has been processed by Authorizing Official
Edited by Al Fontaine