Skip to content
New issue

Have a question about this project? # for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “#”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? # to your account

Snyk auto fix #10636

Merged
merged 1 commit into from
Aug 14, 2023
Merged

Snyk auto fix #10636

merged 1 commit into from
Aug 14, 2023

Conversation

c2c-bot-gis-ci
Copy link
Collaborator

⠋ Running snyk test for /home/runner/work/c2cgeoportal/c2cgeoportal
► Running snyk test for /home/runner/work/c2cgeoportal/c2cgeoportal

  • Looking for supported Python items

✔ Looking for supported Python items

  • Looking for supported Python items

✔ Looking for supported Python items
⠋ Processing 4 pyproject.toml items⠋ Processing 7 requirements.txt items✔ Processed 7 requirements.txt items

  • Checking poetry version
    ⚠️ Could not detect poetry version, proceeding anyway. Some operations may fail.
  • Fixing pyproject.toml 1/1
    ✔ Processed 4 pyproject.toml items
    ✔ Done

Successful fixes:

pyproject.toml
✔ Upgraded cryptography from 41.0.2 to 41.0.3
✔ Pinned gitpython from 3.1.30 to 3.1.32

Unresolved items:

doc/pyproject.toml
✖ There is no actionable remediation to apply

docker/config/pyproject.toml
✖ There is no actionable remediation to apply

docker/qgisserver/pyproject.toml
✖ There is no actionable remediation to apply

geoportal/package-lock.json
✖ npm is not supported.

Summary:

4 items were not fixed
1 items were successfully fixed
2 items were not vulnerable

24 issues: 2 High | 15 Medium | 7 Low
4 issues are fixable
4 issues were successfully fixed

Tip: Re-run in debug mode to see more information: DEBUG=snyk . If the issue persists contact support@snyk.io

@c2c-bot-gis-ci c2c-bot-gis-ci added the dependencies Update the dependencies label Aug 14, 2023
@sbrunner sbrunner merged commit 05fe30e into 2.8 Aug 14, 2023
@sbrunner sbrunner deleted the snyk-fix/2.8 branch August 14, 2023 10:38
# for free to join this conversation on GitHub. Already have an account? # to comment
Labels
dependencies Update the dependencies
Projects
None yet
Development

Successfully merging this pull request may close these issues.

2 participants