server icon indicating copy to clipboard operation
server copied to clipboard

[deps] Vault: Update aspnet-health-checks monorepo

Open renovate[bot] opened this issue 1 year ago • 2 comments

This PR contains the following updates:

Package Change Age Adoption Passing Confidence
AspNetCore.HealthChecks.SqlServer 8.0.0 -> 8.0.2 age adoption passing confidence
AspNetCore.HealthChecks.Uris 8.0.0 -> 8.0.1 age adoption passing confidence

Configuration

📅 Schedule: Branch creation - "every 2nd week starting on the 2 week of the year before 4am on Monday" (UTC), Automerge - At any time (no schedule defined).

🚦 Automerge: Disabled by config. Please merge this manually once you are satisfied.

Rebasing: Whenever PR becomes conflicted, or you tick the rebase/retry checkbox.

👻 Immortal: This PR will be recreated if closed unmerged. Get config help if that's undesired.


  • [ ] If you want to rebase/retry this PR, check this box

This PR was generated by Mend Renovate. View the repository job log.

renovate[bot] avatar May 27 '24 00:05 renovate[bot]

Internal tracking:

  • ID: PM-8413
  • Link: https://bitwarden.atlassian.net/browse/PM-8413

bitwarden-bot avatar May 27 '24 00:05 bitwarden-bot

Codecov Report

All modified and coverable lines are covered by tests :white_check_mark:

Project coverage is 41.57%. Comparing base (a1e4e47) to head (5437151). Report is 1 commits behind head on main.

Additional details and impacted files
@@           Coverage Diff           @@
##             main    #4132   +/-   ##
=======================================
  Coverage   41.57%   41.57%           
=======================================
  Files        1357     1357           
  Lines       64056    64056           
  Branches     5891     5891           
=======================================
  Hits        26631    26631           
  Misses      36208    36208           
  Partials     1217     1217           

:umbrella: View full report in Codecov by Sentry.
:loudspeaker: Have feedback on the report? Share it here.

codecov[bot] avatar May 27 '24 00:05 codecov[bot]

Edited/Blocked Notification

Renovate will not automatically rebase this PR, because it does not recognize the last commit author and assumes somebody else may have edited the PR.

You can manually request rebase by checking the rebase/retry box above.

⚠️ Warning: custom changes will be lost.

renovate[bot] avatar Oct 07 '24 10:10 renovate[bot]

Logo Checkmarx One – Scan Summary & Details1fbd8d62-aefe-444b-80d2-7fc174d02ae9

New Issues

Severity Issue Source File / Package Checkmarx Insight
MEDIUM CSRF /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
MEDIUM CSRF /src/Api/Billing/Controllers/OrganizationsController.cs: 105 Attack Vector
MEDIUM CSRF /src/Api/Billing/Controllers/OrganizationsController.cs: 49 Attack Vector
MEDIUM CSRF /src/Api/SecretsManager/Controllers/SecretsController.cs: 79 Attack Vector
MEDIUM CSRF /src/Api/SecretsManager/Controllers/SecretsController.cs: 128 Attack Vector
MEDIUM CSRF /src/Api/SecretsManager/Controllers/SecretsTrashController.cs: 32 Attack Vector
MEDIUM Privacy_Violation /src/Core/Models/Data/UserWithCalculatedPremium.cs: 26 Attack Vector
MEDIUM Privacy_Violation /src/Core/Models/Data/UserWithCalculatedPremium.cs: 18 Attack Vector
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 1293 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Api/AdminConsole/Controllers/ProvidersController.cs: 72 Attack Vector
LOW Log_Forging /src/Api/AdminConsole/Controllers/ProvidersController.cs: 72 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/StripeController.cs: 164 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/StripeController.cs: 164 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Identity/Billing/Controller/AccountsController.cs: 23 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/StripeController.cs: 164 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/StripeController.cs: 164 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Billing/Controllers/RecoveryController.cs: 38 Attack Vector
LOW Log_Forging /src/Api/Billing/Controllers/ProviderBillingController.cs: 52 Attack Vector

Fixed Issues

Severity Issue Source File / Package
MEDIUM CSRF /src/Api/Controllers/CollectionsController.cs: 247
MEDIUM CSRF /src/Api/Auth/Controllers/TwoFactorController.cs: 118
MEDIUM CSRF /src/Api/Auth/Controllers/AccountsController.cs: 366
MEDIUM CSRF /src/Billing/Controllers/StripeController.cs: 176
MEDIUM CSRF /src/Api/AdminConsole/Public/Controllers/OrganizationController.cs: 43
MEDIUM CSRF /src/Api/AdminConsole/Public/Controllers/OrganizationController.cs: 43
MEDIUM CSRF /src/Api/AdminConsole/Public/Controllers/OrganizationController.cs: 43
MEDIUM CSRF /src/Api/Controllers/CollectionsController.cs: 247
MEDIUM CSRF /src/Api/AdminConsole/Controllers/GroupsController.cs: 238
MEDIUM Privacy_Violation /src/Api/Vault/Models/Request/CipherRequestModel.cs: 198
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 860
MEDIUM Privacy_Violation /src/Core/Auth/UserFeatures/TdeOffboardingPassword/TdeOffboardingPasswordCommand.cs: 81
MEDIUM Privacy_Violation /src/Api/Auth/Controllers/TwoFactorController.cs: 380
MEDIUM Privacy_Violation /src/Api/Vault/Models/Request/CipherRequestModel.cs: 198
MEDIUM Privacy_Violation /src/Core/Auth/UserFeatures/UserMasterPassword/SetInitialMasterPasswordCommand.cs: 59
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 522
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 577
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 718
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 771
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 575
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 744
MEDIUM Privacy_Violation /src/Core/Services/Implementations/UserService.cs: 773
LOW Log_Forging /src/Notifications/Controllers/SendController.cs: 27
LOW Log_Forging /bitwarden_license/src/Scim/Controllers/v2/UsersController.cs: 114
LOW Log_Forging /bitwarden_license/src/Scim/Controllers/v2/GroupsController.cs: 98
LOW Log_Forging /src/Api/AdminConsole/Controllers/OrganizationUsersController.cs: 456
LOW Log_Forging /src/Notifications/Controllers/SendController.cs: 27
LOW Log_Forging /src/Api/Vault/Controllers/CiphersController.cs: 574
LOW Log_Forging /src/Api/Vault/Controllers/CiphersController.cs: 553
LOW Log_Forging /src/Api/Auth/Controllers/TwoFactorController.cs: 349
LOW Log_Forging /src/Api/Vault/Controllers/CiphersController.cs: 603
LOW Log_Forging /src/Api/Vault/Controllers/CiphersController.cs: 530
LOW Log_Forging /bitwarden_license/src/Scim/Controllers/v2/UsersController.cs: 114
LOW Log_Forging /bitwarden_license/src/Scim/Controllers/v2/GroupsController.cs: 98

github-actions[bot] avatar Oct 07 '24 11:10 github-actions[bot]