-
Notifications
You must be signed in to change notification settings - Fork 1.6k
upgrade notes: correct dedupe command lines #12007
New issue
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
upgrade notes: correct dedupe command lines #12007
Conversation
DryRun Security SummaryDocumentation updates for DefectDojo versions 2.42-2.44 address potential security risks related to command execution and parser name injection in Docker containers, emphasizing the need for careful administrative control. Expand for full summary
Note: While no direct critical vulnerabilities were found, the security considerations around command execution and potential injection were highlighted across the documentation patches. |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Good point, a shame github doesn't render the preview for us in the PR :-) Removed. Also changed |
There was a problem hiding this comment.
Choose a reason for hiding this comment
The reason will be displayed to describe this comment to others. Learn more.
Cool, thanks! Looks great, appreciate it!
* upgrade notes: correct dedupe command lines * upgrade notes: unquote
* upgrade notes: correct dedupe command lines * upgrade notes: unquote
Some small fixes here mainly around quoting.