UNCLASSIFIED

Merge branch 'fix-contrib' into 'development'

added script

See merge request !20
18 jobs for development in 24 minutes and 55 seconds (queued for 27 minutes and 16 seconds)
Status Job ID Name Coverage
  .Pre
passed #2952775
ironbank
load scripts

00:00:33

 
  Preflight
passed #2952777
ironbank
folder structure

00:00:35

passed #2952778
ironbank
hardening_manifest

00:00:22

passed #2952776
ironbank
trufflehog

00:00:42

 
  Lint
passed #2952779
ironbank
wl compare lint

00:01:04

 
  Finding Compare
failed #2952780
ironbank allowed to fail
vat compare

00:01:06

 
  Import Artifacts
passed #2952781
ironbank
import artifacts

00:04:25

 
  Scan Artifacts
passed #2952782
ironbank
clamav scan

00:03:45

 
  Build
passed #2952783
ironbank-isolated
build

00:05:03

 
  Scanning
passed #2952784
ironbank
anchore scan

00:04:07

passed #2952785
ironbank
openscap compliance

00:02:23

passed #2952786
ironbank
openscap cve

00:04:06

passed #2952787
ironbank
twistlock scan

00:00:31

 
  Csv Output
passed #2952788
ironbank
csv output

00:01:11

 
  Check Cves
failed #2952789
ironbank allowed to fail
check cves

00:00:36

 
  Documentation
passed #2952790
ironbank
documentation

00:00:51

 
  S3 Publish
passed #2952791
ironbank
upload to s3

00:01:05

 
  Vat
passed #2952792
ironbank
vat

00:00:19

 
Name Stage Failure
failed
check cves Check Cves
ERROR: twistlock_cve                 CVE-2017-1000048              qs-3.0.0                      None                          
ERROR: twistlock_cve CVE-2017-1000048 qs-4.0.0 None
ERROR: twistlock_cve CVE-2017-1000048 qs-6.2.0 None
ERROR: twistlock_cve CVE-2016-10518 ws-0.4.32 None
ERROR: twistlock_cve CVE-2016-10542 ws-0.4.32 None
ERROR: twistlock_cve CVE-2020-7774 y18n-3.2.1 None
ERROR: twistlock_cve CVE-2020-7608 yargs-parser-5.0.0 None
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 1
failed
vat compare Finding Compare
INFO: Number of findings in api not in query: 1
INFO: Findings from api not in direct query
INFO: ('CVE-2021-27290', 'anchore_cve', 'ssri-6.0.1\nOther Advisory URL: https://blog.doyensec.com/2021/03/11/regexploit.html\nCVE ID: http://cve.mitre.org/cgi-bin/cvename.cgi?name=2021-27290\nVendor Specific Solution URL: https://github.com/npm/ssri/commit/76e223317d971f19e4db8191865bdad5edee40d2\nOther Advisory URL: https://doyensec.com/resources/Doyensec_Advisory_ssri_redos.pdf\nOther Advisory URL: https://npmjs.com\nOther Advisory URL: https://github.com/yetingli/SaveResults/blob/main/pdf/ssri-redos.pdf\nBug Tracker: https://bugs.debian.org/cgi-bin/bugreport.cgi?bug=985841\n', 'ssri-6.0.1', '/usr/local/lib/node_modules/npm/node_modules/ssri/package.json')
Uploading artifacts for failed job
Uploading artifacts...
ci-artifacts/compare/: found 2 matching files and directories

Uploading artifacts as "archive" to coordinator... ok
id=2952780 responseStatus=201 Created token=8Nfts2HG
Cleaning up file based variables
ERROR: Job failed: command terminated with exit code 4