Skip to content

Update TokenVerifier to verify AuthZ too (#8063) #73

Update TokenVerifier to verify AuthZ too (#8063)

Update TokenVerifier to verify AuthZ too (#8063) #73

Triggered via push July 4, 2024 13:54
Status Failure
Total duration 8m 24s
Artifacts
analyze  /  Analyze CodeQL
8m 13s
analyze / Analyze CodeQL
analyze  /  Check Unicode CC
24s
analyze / Check Unicode CC
analyze  /  Go vulnerability Detection
50s
analyze / Go vulnerability Detection
Fit to window
Zoom out
Zoom in

Annotations

6 errors and 10 warnings
analyze / Go vulnerability Detection
retryablehttp.Client.Do calls http.Client.CloseIdleConnections
analyze / Go vulnerability Detection
retryablehttp.Client.Do calls http.Client.Do
analyze / Go vulnerability Detection
auth.OIDCTokenVerifier.getKubernetesOIDCDiscovery calls http.Client.Get
analyze / Go vulnerability Detection
lib.WaitForReadiness calls http.Get
analyze / Go vulnerability Detection
adapter.client.CloseIdleConnections calls http.Transport.CloseIdleConnections
analyze / Analyze CodeQL
Resource not accessible by integration
analyze / Go vulnerability Detection
Restore cache failed: Dependencies file is not found in /home/runner/work/eventing/eventing. Supported file pattern: go.sum
analyze / Analyze CodeQL
Restore cache failed: Dependencies file is not found in /home/runner/work/eventing/eventing. Supported file pattern: go.sum
analyze / Analyze CodeQL
Resource not accessible by integration
analyze / Analyze CodeQL
Resource not accessible by integration
analyze / Analyze CodeQL
This run of the CodeQL Action does not have permission to access Code Scanning API endpoints. As a result, it will not be opted into any experimental features. This could be because the Action is running on a pull request from a fork. If not, please ensure the Action has the 'security-events: write' permission. Details: Resource not accessible by integration
analyze / Analyze CodeQL
Feature flags do not specify a default CLI version. Falling back to the CLI version shipped with the Action. This is 2.17.6.
analyze / Analyze CodeQL
Resource not accessible by integration
analyze / Analyze CodeQL
Resource not accessible by integration
analyze / Analyze CodeQL
Resource not accessible by integration
analyze / Analyze CodeQL
Resource not accessible by integration