add docker file #142
cloud_code_scan.yml
on: pull_request_target
stc
1m 4s
sca
1m 37s
Annotations
2 errors and 2 warnings
|
stc
检测到当前应用使用了不安全版本的组件org.apache.logging.log4j:log4j-core
文件: http://github.com/ChaosYao/sofa-jraft/blob/2025-09-05_dockerFile/jraft-test/pom.xml
细节/建议:
具体pom依赖情况如下:
<groupId>org.apache.logging.log4j</groupId>
<artifactId>[H[log4j-core]H]</artifactId>
<version>2.13.2</version>
对应的修复版本为:
<version>2.15.0</version>
|
|
sca
开源合规组件 执行失败 或 超时未完成!
|
|
stc
详情请查看:https://devops.cloud.alipay.com/project/19500036/82706139/pipeline/details
|
|
sca
详情请查看:https://devops.cloud.alipay.com/project/19500036/82706138/pipeline/details
|