Skip to content

Update ZAP integration to use the correct GitHub Actions repository

7e135ee
Select commit
Loading
Failed to load commit list.
Merged

Update ZAP integration to use the correct GitHub Actions repository #52

Update ZAP integration to use the correct GitHub Actions repository
7e135ee
Select commit
Loading
Failed to load commit list.
GitHub Advanced Security / CodeQL completed Apr 22, 2025 in 4s

2 configurations not found

Warning: Code scanning may not have found all the alerts introduced by this pull request, because 2 configurations present on refs/heads/main were not found:

Actions workflow (SAST-GitHubAdvancedSecurity-CodeQL.yml)

  • ❓  /language:csharp
  • ❓  /language:javascript-typescript

New alerts in code changed by this pull request

Security Alerts:

  • 1 medium

See annotations below for details.

View all branch alerts.

Annotations

Check warning on line 63 in .github/workflows/DAST-ZAP-Zed-Attach-Proxy-Checkmarx.yml

See this annotation in the file changed.

Code scanning / CodeQL

Unpinned tag for a non-immutable Action in workflow Medium

Unpinned 3rd party Action 'DAST - Zed Attack Proxy (ZAP) Full Scan' step
Uses Step
uses 'githubabcs-devops/zap-to-ghas' with ref 'main', not a pinned commit hash