Skip to content

ci(security): resolve security alerts from scorecard (#12494) #10745

ci(security): resolve security alerts from scorecard (#12494)

ci(security): resolve security alerts from scorecard (#12494) #10745

Triggered via push January 9, 2025 13:05
Status Failure
Total duration 5h 48m 4s
Artifacts 55
Matrix: test / test_e2e
Matrix: test / test_e2e_env
build_publish  /  build-binaries
9m 30s
build_publish / build-binaries
Matrix: build_publish / build-images
build_publish  /  digest-images
0s
build_publish / digest-images
build_publish  /  publish-helm
0s
build_publish / publish-helm
provenance  /  ...  /  detect-env
provenance / artifact-provenance / detect-env
Matrix: provenance / images-provenance
Waiting for pending jobs
provenance  /  ...  /  generator
provenance / artifact-provenance / generator
provenance  /  ...  /  upload-assets
provenance / artifact-provenance / upload-assets
provenance  /  ...  /  final
provenance / artifact-provenance / final
distributions
4s
distributions
Fit to window
Zoom out
Zoom in

Annotations

6 errors, 9 warnings, and 11 notices
build_publish / build-images (kuma-cni)
Process completed with exit code 1.
build_publish / build-images (kuma-dp)
Process completed with exit code 1.
build_publish / build-images (kumactl)
Process completed with exit code 1.
build_publish / build-images (kuma-cp)
Process completed with exit code 1.
build_publish / build-images (kuma-init)
Process completed with exit code 1.
distributions
Process completed with exit code 1.
check
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
check
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
check
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
build_publish / build-images (kuma-dp)
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
build_publish / build-images (kuma-dp)
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
build_publish / build-images (kuma-dp)
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
build_publish / build-images (kuma-dp)
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
build_publish / build-images (kuma-dp)
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
build_publish / build-images (kuma-dp)
Failed minimum severity level. Found vulnerabilities with level 'critical' or higher
check
Grype DB is updated succesfully
build_publish / build-images (kuma-cni)
Grype DB is updated succesfully
build_publish / build-images (kuma-cni)
Grype DB is already up-to-date
build_publish / build-images (kuma-dp)
Grype DB is updated succesfully
build_publish / build-images (kuma-dp)
Grype DB is already up-to-date
build_publish / build-images (kumactl)
Grype DB is updated succesfully
build_publish / build-images (kumactl)
Grype DB is already up-to-date
build_publish / build-images (kuma-cp)
Grype DB is updated succesfully
build_publish / build-images (kuma-cp)
Grype DB is already up-to-date
build_publish / build-images (kuma-init)
Grype DB is updated succesfully
build_publish / build-images (kuma-init)
Grype DB is already up-to-date

Artifacts

Produced during runtime
Name Size
binary_artifacts
397 MB
cve-report.json
221 KB
cve-report.sarif
37 KB
image_kuma-cni
73.4 MB
image_kuma-cni-amd64-cve-report.json
5.46 KB
image_kuma-cni-amd64-cve-report.sarif
3.37 KB
image_kuma-cni-amd64-sbom.cyclonedx.json
11.6 KB
image_kuma-cni-amd64-sbom.spdx.json
189 KB
image_kuma-cni-arm64-cve-report.json
5.46 KB
image_kuma-cni-arm64-cve-report.sarif
3.37 KB
image_kuma-cni-arm64-sbom.cyclonedx.json
11.6 KB
image_kuma-cni-arm64-sbom.spdx.json
189 KB
image_kuma-cni.digest.json
234 Bytes
image_kuma-cp
51.7 MB
image_kuma-cp-amd64-cve-report.json
2.3 KB
image_kuma-cp-amd64-cve-report.sarif
1.34 KB
image_kuma-cp-amd64-sbom.cyclonedx.json
16.3 KB
image_kuma-cp-amd64-sbom.spdx.json
166 KB
image_kuma-cp-arm64-cve-report.json
2.31 KB
image_kuma-cp-arm64-cve-report.sarif
1.35 KB
image_kuma-cp-arm64-sbom.cyclonedx.json
16.3 KB
image_kuma-cp-arm64-sbom.spdx.json
166 KB
image_kuma-cp.digest.json
232 Bytes
image_kuma-dp
113 MB
image_kuma-dp-amd64-cve-report.json
8.96 KB
image_kuma-dp-amd64-cve-report.sarif
4.48 KB
image_kuma-dp-amd64-sbom.cyclonedx.json
17.7 KB
image_kuma-dp-amd64-sbom.spdx.json
196 KB
image_kuma-dp-arm64-cve-report.json
8.97 KB
image_kuma-dp-arm64-cve-report.sarif
4.48 KB
image_kuma-dp-arm64-sbom.cyclonedx.json
17.7 KB
image_kuma-dp-arm64-sbom.spdx.json
196 KB
image_kuma-dp.digest.json
232 Bytes
image_kuma-init
120 MB
image_kuma-init-amd64-cve-report.json
20.8 KB
image_kuma-init-amd64-cve-report.sarif
7.43 KB
image_kuma-init-amd64-sbom.cyclonedx.json
31.9 KB
image_kuma-init-amd64-sbom.spdx.json
278 KB
image_kuma-init-arm64-cve-report.json
20.8 KB
image_kuma-init-arm64-cve-report.sarif
7.42 KB
image_kuma-init-arm64-sbom.cyclonedx.json
31.8 KB
image_kuma-init-arm64-sbom.spdx.json
278 KB
image_kuma-init.digest.json
238 Bytes
image_kumactl
71.5 MB
image_kumactl-amd64-cve-report.json
5.43 KB
image_kumactl-amd64-cve-report.sarif
3.35 KB
image_kumactl-amd64-sbom.cyclonedx.json
15.9 KB
image_kumactl-amd64-sbom.spdx.json
194 KB
image_kumactl-arm64-cve-report.json
5.43 KB
image_kumactl-arm64-cve-report.sarif
3.35 KB
image_kumactl-arm64-sbom.cyclonedx.json
15.9 KB
image_kumactl-arm64-sbom.spdx.json
194 KB
image_kumactl.digest.json
231 Bytes
sbom.cyclonedx.json
254 KB
sbom.spdx.json
316 KB