Skip to content

Conversation

@manuel-sommer
Copy link
Contributor

@manuel-sommer manuel-sommer commented Oct 5, 2025

@github-actions github-actions bot added the settings_changes Needs changes to settings.py based on changes in settings.dist.py included in this PR label Oct 6, 2025
@manuel-sommer manuel-sommer marked this pull request as ready for review October 6, 2025 05:52
@dryrunsecurity
Copy link

dryrunsecurity bot commented Oct 6, 2025

DryRun Security

🔴 Risk threshold exceeded.

This pull request modifies a sensitive file (dojo/apps.py) with edits flagged by the scanner; sensitive paths and allowed authors can be configured in .dryrunsecurity.yaml. The same issue was detected twice for dojo/apps.py and should be reviewed to confirm the changes are authorized.

🔴 Configured Codepaths Edit in dojo/apps.py
Vulnerability Configured Codepaths Edit
Description Sensitive edits detected for this file. Sensitive file paths and allowed authors can be configured in .dryrunsecurity.yaml.
🔴 Configured Codepaths Edit in dojo/apps.py
Vulnerability Configured Codepaths Edit
Description Sensitive edits detected for this file. Sensitive file paths and allowed authors can be configured in .dryrunsecurity.yaml.

We've notified @mtesauro.


All finding details can be found in the DryRun Security Dashboard.

@github-actions github-actions bot removed the settings_changes Needs changes to settings.py based on changes in settings.dist.py included in this PR label Oct 6, 2025
@Maffooch Maffooch requested review from Jino-T and blakeaowens October 7, 2025 15:01
Copy link
Contributor

@mtesauro mtesauro left a comment

Choose a reason for hiding this comment

The reason will be displayed to describe this comment to others. Learn more.

Approved

@manuel-sommer manuel-sommer changed the title ⬆️ Bump ruff from 0.13.2 to 0.13.3 ⬆️ Bump ruff from 0.13.2 to 0.14.0 Oct 8, 2025
@valentijnscholten valentijnscholten merged commit eb3c83a into DefectDojo:dev Oct 8, 2025
148 checks passed
@valentijnscholten valentijnscholten added this to the 2.52.0 milestone Oct 8, 2025
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants