Skip to content

Merge remote-tracking branch 'origin/dependabot/npm_and_yarn/zustand-… #994

Merge remote-tracking branch 'origin/dependabot/npm_and_yarn/zustand-…

Merge remote-tracking branch 'origin/dependabot/npm_and_yarn/zustand-… #994

Triggered via push August 31, 2026 14:36
Status Failure
Total duration 19h 26m 33s
Artifacts 5
SAST - Semgrep OWASP Top 10
1m 35s
SAST - Semgrep OWASP Top 10
Dependency Scanning
4m 11s
Dependency Scanning
Container Scanning - Trivy
3m 16s
Container Scanning - Trivy
DAST - OWASP ZAP Baseline
3m 29s
DAST - OWASP ZAP Baseline
Security Dashboard
6s
Security Dashboard
Fit to window
Zoom out
Zoom in

Annotations

7 errors and 10 warnings
Dependency Scanning
Process completed with exit code 1.
Dependency Scanning
8 critical dependencies finding(s) block merge.
DAST - OWASP ZAP Baseline
Process completed with exit code 1.
SAST - Semgrep OWASP Top 10
Process completed with exit code 1.
SAST - Semgrep OWASP Top 10
11 critical semgrep finding(s) block merge.
Container Scanning - Trivy
Process completed with exit code 1.
Container Scanning - Trivy
7 critical trivy finding(s) block merge.
Dependency Scanning
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/upload-artifact@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Dependency Scanning
34 high-severity dependencies finding(s) require security-team review.
DAST - OWASP ZAP Baseline
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/upload-artifact@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
SAST - Semgrep OWASP Top 10
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/upload-artifact@v4, github/codeql-action/upload-sarif@v3. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
SAST - Semgrep OWASP Top 10
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
SAST - Semgrep OWASP Top 10
201 high-severity semgrep finding(s) require security-team review.
Container Scanning - Trivy
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/upload-artifact@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Container Scanning - Trivy
124 high-severity trivy finding(s) require security-team review.
Security Dashboard
Node.js 20 is deprecated. The following actions target Node.js 20 but are being forced to run on Node.js 24: actions/upload-artifact@v4. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
Security Dashboard
359 high-severity security finding(s) require security-team review.

Artifacts

Produced during runtime
Name Size Digest
security-container-trivy
172 KB
sha256:f0d29c3f099340fe740b30f320a65c6fc44faad6f3724e0beba65352145a008a
security-dashboard
9.45 KB
sha256:46200b9931f2cd4f87ab92079860162dfee8b871713b58a3d1e27ed09fdea295
security-dast-zap
277 Bytes
sha256:94d58322ffa6ecd91b2791f9039c4b94091f8aa4684d73abe72aa0a37acb028c
security-dependency-scan
22.2 KB
sha256:cbd8aef647ccd1712917525a76a737dd3aac5729dd4f229ea7a1af10986b7d58
security-sast-semgrep
146 KB
sha256:8fd7509153d4e8c1e57b988a6dc5770777669f2e2d825954a2220244beb3d8a7