Skip to content

[CU-86b8rd19x] Add PR validation pipeline and fix logback CVE#18

Merged
janfaron merged 1 commit intomainfrom
update-pr-validation-pipeline-CU-86b8rd19x
Apr 14, 2026
Merged

[CU-86b8rd19x] Add PR validation pipeline and fix logback CVE#18
janfaron merged 1 commit intomainfrom
update-pr-validation-pipeline-CU-86b8rd19x

Conversation

@janfaron
Copy link
Copy Markdown
Contributor

  • Add Build & Test, SAST (SonarQube), SCA (Trivy), Secrets Detection (Gitleaks) workflows
  • Bump logback-classic 1.2.8 → 1.2.13 (fixes CVE-2023-6378 serialization vulnerability)
  • Add .gitleaks.toml, .gitleaksignore, .trivyignore.yaml

Co-Authored-By: Claude Opus 4.6 (1M context) noreply@anthropic.com

- Add Build & Test, SAST (SonarQube), SCA (Trivy), Secrets Detection (Gitleaks) workflows
- Bump logback-classic 1.2.8 → 1.2.13 (fixes CVE-2023-6378 serialization vulnerability)
- Add .gitleaks.toml, .gitleaksignore, .trivyignore.yaml

Co-Authored-By: Claude Opus 4.6 (1M context) <noreply@anthropic.com>
Copy link
Copy Markdown

@jstromsky jstromsky left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

lgtm 👍

@janfaron janfaron merged commit 4391955 into main Apr 14, 2026
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

2 participants