chore(deps): bump aquasecurity/trivy-action from 0.30.0 to 0.35.0 in /.github/workflows in the github_actions group across 1 directory #1
Annotations
12 warnings
|
Complete job
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: actions/checkout@v4, github/codeql-action/upload-sarif@v3. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
|
|
Upload SARIF file for GitHub Advanced Security Dashboard
CodeQL Action v3 will be deprecated in December 2026. Please update all occurrences of the CodeQL Action in your workflow files to v4. For more information, see https://github.blog/changelog/2025-10-28-upcoming-deprecation-of-codeql-action-v3/
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L52
Attribute 'security_opt' should be defined.
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L52
Check containers periodically to see if they are running properly.
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L20
Check containers periodically to see if they are running properly.
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L34
Check containers periodically to see if they are running properly.
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L27
Incoming container traffic should be bound to a specific host interface
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L44
Incoming container traffic should be bound to a specific host interface
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L56
Incoming container traffic should be bound to a specific host interface
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L52
Some capabilities are not needed in certain (or any) containers. Make sure that you only add capabilities that your container needs. Drop unnecessary capabilities as well.
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L20
Some capabilities are not needed in certain (or any) containers. Make sure that you only add capabilities that your container needs. Drop unnecessary capabilities as well.
|
|
KICS scan:
tx-backend/docker/docker-compose.yml#L34
Some capabilities are not needed in certain (or any) containers. Make sure that you only add capabilities that your container needs. Drop unnecessary capabilities as well.
|
Loading