pentaho-platform icon indicating copy to clipboard operation
pentaho-platform copied to clipboard

[PPP-5004]-Tomcat Configuration vulnerable to Server-Side Request Forgery

Open SahithiKommagani6 opened this issue 9 months ago • 12 comments

PPP-5004-Tomcat Configuration vulnerable to Server-Side Request Forgery

SahithiKommagani6 avatar May 02 '24 15:05 SahithiKommagani6

:white_check_mark: Build finished in 20m 33s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions

:exclamation: No tests found!

:information_source: This is an automatic message

buildguy avatar May 02 '24 16:05 buildguy

This are the linked prs https://github.com/pentaho/security-web/pull/28 https://github.com/pentaho/maven-parent-poms/pull/543

SahithiKommagani6 avatar May 06 '24 06:05 SahithiKommagani6

:white_check_mark: Build finished in 15m 18s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions

:exclamation: No tests found!

:information_source: This is an automatic message

buildguy avatar May 06 '24 10:05 buildguy

:white_check_mark: Build finished in 10m 26s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions

:exclamation: No tests found!

:information_source: This is an automatic message

buildguy avatar May 06 '24 10:05 buildguy

:white_check_mark: Build finished in 18m 3s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions

:exclamation: No tests found!

:information_source: This is an automatic message

buildguy avatar May 06 '24 13:05 buildguy

SonarQube Quality Gate

Quality Gate passed

Bug A 0 Bugs
Vulnerability A 0 Vulnerabilities
Security Hotspot A 0 Security Hotspots
Code Smell A 0 Code Smells

No Coverage information No Coverage information
No Duplication information No Duplication information

👍 Frogbot scanned this pull request and found that it did not add vulnerable dependencies.

Note:

Frogbot also supports Contextual Analysis, Secret Detection, IaC and SAST Vulnerabilities Scanning. This features are included as part of the JFrog Advanced Security package, which isn't enabled on your system.


buildguy avatar May 06 '24 13:05 buildguy

:white_check_mark: Build finished in 8m 46s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions

:exclamation: No tests found!

:information_source: This is an automatic message

buildguy avatar May 06 '24 13:05 buildguy

:x: Build failed in 6m 1s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 07 '24 15:05 buildguy

:x: Build failed in 3m 8s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 07 '24 15:05 buildguy

:x: Build failed in 3m 23s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 10:05 buildguy

:x: Build failed in 3m 27s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 10:05 buildguy

:x: Build failed in 4m 39s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 11:05 buildguy

:x: Build failed in 4m 12s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 11:05 buildguy

:x: Build failed in 4m 32s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 13:05 buildguy

:x: Build failed in 3m 10s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 13:05 buildguy

:x: Build failed in 3m 22s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 13:05 buildguy

:x: Build failed in 3m 13s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 14:05 buildguy

:x: Build failed in 2m 37s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 14:05 buildguy

:x: Build failed in 3m 45s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 14:05 buildguy

:x: Build failed in 3m 30s

Build command:

mvn clean verify -B -e -Daudit -Djs.no.sandbox -pl \
assemblies/pentaho-solutions,extensions

:exclamation: No tests found!

Errors:

Filtered log (click to expand)

script returned exit code 1

:information_source: This is an automatic message

buildguy avatar May 08 '24 14:05 buildguy