Skip to content

Security

Security #40

Triggered via schedule March 9, 2026 00:29
Status Failure
Total duration 57s
Artifacts

security.yml

on: schedule
Vulnerability Scan (Trivy)
19s
Vulnerability Scan (Trivy)
Dependency Review
0s
Dependency Review
Go Vulnerability Check
53s
Go Vulnerability Check
Fit to window
Zoom out
Zoom in

Annotations

10 errors and 1 warning
Go Vulnerability Check
manager.Plugin.Start calls fmt.Sprintf, which eventually calls http2.ErrCode.String
Go Vulnerability Check
bootstrap.GenerateId calls rand.Read, which calls http2.ConnectionError.Error
Go Vulnerability Check
manager.ComputePluginHash calls io.Copy, which eventually calls x509.Certificate.Verify
Go Vulnerability Check
manager.ComputePluginHash calls io.Copy, which eventually calls x509.Certificate.Verify
Go Vulnerability Check
jwtauth.JWKSClient.refresh calls http.Client.Do, which eventually calls url.URL.Parse
Go Vulnerability Check
jwktool.main calls http.ListenAndServe, which eventually calls url.ParseRequestURI
Go Vulnerability Check
jwtauth.NewJWKSClient calls url.Parse
Go Vulnerability Check
wasm.init calls wazero.init, which eventually calls os.ReadDir
Go Vulnerability Check
jwktool.main calls http.ListenAndServe, which eventually calls template.Template.ExecuteTemplate
Go Vulnerability Check
jwktool.main calls http.ListenAndServe, which eventually calls template.Template.Execute
Go Vulnerability Check
Failed to restore: "/usr/bin/tar" failed with error: The process '/usr/bin/tar' failed with exit code 2