Update TokenVerifier to verify AuthZ too (#8063) #73
knative-security.yaml
on: push
analyze
/
Analyze CodeQL
8m 13s
analyze
/
Check Unicode CC
24s
analyze
/
Go vulnerability Detection
50s
Annotations
6 errors and 10 warnings
analyze / Go vulnerability Detection
retryablehttp.Client.Do calls http.Client.CloseIdleConnections
|
analyze / Go vulnerability Detection
retryablehttp.Client.Do calls http.Client.Do
|
analyze / Go vulnerability Detection
auth.OIDCTokenVerifier.getKubernetesOIDCDiscovery calls http.Client.Get
|
analyze / Go vulnerability Detection
lib.WaitForReadiness calls http.Get
|
analyze / Go vulnerability Detection
adapter.client.CloseIdleConnections calls http.Transport.CloseIdleConnections
|
analyze / Analyze CodeQL
Resource not accessible by integration
|
analyze / Go vulnerability Detection
Restore cache failed: Dependencies file is not found in /home/runner/work/eventing/eventing. Supported file pattern: go.sum
|
analyze / Analyze CodeQL
Restore cache failed: Dependencies file is not found in /home/runner/work/eventing/eventing. Supported file pattern: go.sum
|
analyze / Analyze CodeQL
Resource not accessible by integration
|
analyze / Analyze CodeQL
Resource not accessible by integration
|
analyze / Analyze CodeQL
This run of the CodeQL Action does not have permission to access Code Scanning API endpoints. As a result, it will not be opted into any experimental features. This could be because the Action is running on a pull request from a fork. If not, please ensure the Action has the 'security-events: write' permission. Details: Resource not accessible by integration
|
analyze / Analyze CodeQL
Feature flags do not specify a default CLI version. Falling back to the CLI version shipped with the Action. This is 2.17.6.
|
analyze / Analyze CodeQL
Resource not accessible by integration
|
analyze / Analyze CodeQL
Resource not accessible by integration
|
analyze / Analyze CodeQL
Resource not accessible by integration
|
analyze / Analyze CodeQL
Resource not accessible by integration
|