chore(findings): sonarsource/sonarqube/sonarqube9-community
Summary
sonarsource/sonarqube/sonarqube9-community has 2 new findings discovered during continuous monitoring.
id | source | package |
---|---|---|
CVE-2021-37137 | twistlock_cve | io.netty_netty-codec-4.1.49.Final |
CVE-2021-37136 | twistlock_cve | io.netty_netty-codec-4.1.49.Final |
More information can be found in the failed pipeline located here: https://repo1.dso.mil/dsop/sonarsource/sonarqube/sonarqube9-community/-/jobs/8197717
Definition of Done
Justifications:
-
All findings have been justified -
Justifications have been provided to the container hardening team
Approval Process:
-
Findings Approver has reviewed and approved all justifications -
Approval request has been sent to Authorizing Official -
Approval request has been processed by Authorizing Official
Edited by Al Fontaine