Merge master into feature/ui-e2e-tests #8426
10 new alerts including 10 high severity security vulnerabilities
New alerts in code changed by this pull request
Security Alerts:
- 10 high
Alerts not introduced by this pull request might have been detected because the code changes were too large.
See annotations below for details.
Annotations
Check warning on line 245 in .github/workflows/node.js.yml
Code scanning / CodeQL
Workflow does not contain permissions
Check failure on line 170 in packages/core/src/auth/auth.ts
Code scanning / CodeQL
Polynomial regular expression used on uncontrolled data High
Code scanning / CodeQL
Use of externally-controlled format string High
Check failure on line 31 in packages/core/src/codewhisperer/util/importAdderUtil.ts
Code scanning / CodeQL
Polynomial regular expression used on uncontrolled data High
Check failure on line 65 in packages/core/src/codewhisperer/util/importAdderUtil.ts
Code scanning / CodeQL
Polynomial regular expression used on uncontrolled data High
Check failure on line 559 in packages/core/src/sagemakerunifiedstudio/explorer/nodes/s3Strategy.ts
Code scanning / CodeQL
Incomplete string escaping or encoding High
Check failure on line 94 in packages/core/src/shared/utilities/proxyUtil.ts
Code scanning / CodeQL
Disabling certificate validation High
Check failure on line 56 in packages/core/src/shared/utilities/textUtilities.ts
Code scanning / CodeQL
Polynomial regular expression used on uncontrolled data High
Check failure on line 58 in packages/core/src/shared/utilities/textUtilities.ts
Code scanning / CodeQL
Polynomial regular expression used on uncontrolled data High
Code scanning / CodeQL
Incomplete URL substring sanitization High test
Check failure on line 52 in packages/core/src/test/shared/extensions/ssh.test.ts
Code scanning / CodeQL
Incomplete string escaping or encoding High test