Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Updated Gosec is throwing this error - Error: Unable to upload "results.sarif" as it is not valid SARIF #1220

Closed
Revanthathreya opened this issue Sep 12, 2024 · 3 comments

Comments

@Revanthathreya
Copy link

Revanthathreya commented Sep 12, 2024

After upgrading the Securego/Gosec version, we are encountering an issue. The system is now reporting that the generated SARIF file is invalid.

This we are facing with this version- [v2.21.1]

Could you please assist in troubleshooting this problem or provide guidance on how to resolve it?

@nickeskov
Copy link

Hi, @Revanthathreya! See issues #1214 and #1219

@Revanthathreya
Copy link
Author

Revanthathreya commented Sep 12, 2024

yeah sure ! if the version is older that is 2.20.0, it is working fine and no errors were encountered.

@ccojocar
Copy link
Member

This was fixed, not the action from master is using gosec 2.22.2.

image: 'docker://securego/gosec:2.21.2'

Also the scan was successful, see https://github.com/securego/gosec/actions/runs/10775152002/job/29878917216

mudler added a commit to masa-finance/masa-oracle that referenced this issue Sep 17, 2024
securego/gosec#1220

Signed-off-by: Ettore Di Giacinto <mudler@users.noreply.github.com>
mudler added a commit to masa-finance/masa-oracle that referenced this issue Sep 17, 2024
securego/gosec#1220

Signed-off-by: Ettore Di Giacinto <mudler@users.noreply.github.com>
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants