Skip to content

[SECURITY] HIGH/CRITICAL CVEs found in PR #1 #3

Description

@github-actions

Security Finding

Workflow: Security Gates
PR: #1
Commit: 15a131f

Trivy detected CRITICAL/HIGH CVEs in dependency scan. Review the Security tab for details.

CVSS Threshold Policy:

  • CVSS > 9.0 → blocked build
  • CVSS 7.0-8.9 → this ticket (must be remediated within 30 days)
  • CVSS < 7.0 → logged only

Activity

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Metadata

Metadata

Assignees

No one assigned

    Projects

    No projects

      Milestone

      No milestone

      Relationships

      None yet

      Development

      No branches or pull requests

      Issue actions