Skip to content

CHEF-28294: Fix CVE-2025-61780 - Update rack gem to >= 3.1.18 #218

CHEF-28294: Fix CVE-2025-61780 - Update rack gem to >= 3.1.18

CHEF-28294: Fix CVE-2025-61780 - Update rack gem to >= 3.1.18 #218

Triggered via pull request December 9, 2025 09:24
@jashaikjashaik
synchronize #4129
CHEF-28294
Status Success
Total duration 3m 29s
Artifacts 7
call-ci-main-pr-check-pipeline  /  Checkout repository
7s
call-ci-main-pr-check-pipeline / Checkout repository
Echo stub version
2s
Echo stub version
call-ci-main-pr-check-pipeline  /  Pre-compilation checks
4s
call-ci-main-pr-check-pipeline / Pre-compilation checks
call-ci-main-pr-check-pipeline  /  Generate a simple slug based on repo and date for use in any output artifacts
3s
call-ci-main-pr-check-pipeline / Generate a simple slug based on repo and date for use in any output artifacts
call-ci-main-pr-check-pipeline  /  Build and compilation
3s
call-ci-main-pr-check-pipeline / Build and compilation
call-ci-main-pr-check-pipeline  /  ...  /  Complexity and SLOC generation
23s
call-ci-main-pr-check-pipeline / Source code complexity checks / Complexity and SLOC generation
call-ci-main-pr-check-pipeline  /  Language-specific pre-compilation steps and linting
0s
call-ci-main-pr-check-pipeline / Language-specific pre-compilation steps and linting
call-ci-main-pr-check-pipeline  /  Language-agnostic pre-compilation steps
0s
call-ci-main-pr-check-pipeline / Language-agnostic pre-compilation steps
call-ci-main-pr-check-pipeline  /  ...  /  Trufflehog
18s
call-ci-main-pr-check-pipeline / Trufflehog scan / Trufflehog
call-ci-main-pr-check-pipeline  /  ...  /  Trivy dependency vulnerability scan
23s
call-ci-main-pr-check-pipeline / Trivy scan / Trivy dependency vulnerability scan
call-ci-main-pr-check-pipeline  /  BlackDuck-Polaris-SAST
31s
call-ci-main-pr-check-pipeline / BlackDuck-Polaris-SAST
call-ci-main-pr-check-pipeline  /  Creating packaged binaries
0s
call-ci-main-pr-check-pipeline / Creating packaged binaries
call-ci-main-pr-check-pipeline  /  ...  /  Export SBOM from GitHub Dependency Graph API
43s
call-ci-main-pr-check-pipeline / Generating SBOM / Export SBOM from GitHub Dependency Graph API
call-ci-main-pr-check-pipeline  /  ...  /  Generate SBOM using Blackduck Tool (BLUE)
20s
call-ci-main-pr-check-pipeline / Generating SBOM / Generate SBOM using Blackduck Tool (BLUE)
call-ci-main-pr-check-pipeline  /  ...  /  Generate MSFT SBOM
0s
call-ci-main-pr-check-pipeline / Generating SBOM / Generate MSFT SBOM
call-ci-main-pr-check-pipeline  /  ...  /  license_scout
0s
call-ci-main-pr-check-pipeline / Generating SBOM / license_scout
call-ci-main-pr-check-pipeline  /  Detect SBOM version for application
0s
call-ci-main-pr-check-pipeline / Detect SBOM version for application
call-ci-main-pr-check-pipeline  /  ...  /  SonarQube
3m 5s
call-ci-main-pr-check-pipeline / PUBLIC Sonar SAST scan / SonarQube
call-ci-main-pr-check-pipeline  /  PRIVATE Sonar scan (inline)
0s
call-ci-main-pr-check-pipeline / PRIVATE Sonar scan (inline)
call-ci-main-pr-check-pipeline  /  ...  /  Checkout code
call-ci-main-pr-check-pipeline / INTERNAL Sonar scan / Checkout code
call-ci-main-pr-check-pipeline  /  ...  /  SonarQube
call-ci-main-pr-check-pipeline / INTERNAL Sonar scan / SonarQube
call-ci-main-pr-check-pipeline  /  ...  /  build
call-ci-main-pr-check-pipeline / INTERNAL Sonar scan / build
call-ci-main-pr-check-pipeline  /  ...  /  unit-tests
call-ci-main-pr-check-pipeline / INTERNAL Sonar scan / unit-tests
Matrix: call-ci-main-pr-check-pipeline / Unit tests
call-ci-main-pr-check-pipeline  /  Creating Habitat packages
0s
call-ci-main-pr-check-pipeline / Creating Habitat packages
call-ci-main-pr-check-pipeline  /  ...  /  irfan
call-ci-main-pr-check-pipeline / Reporting to quality dashboard / irfan
call-ci-main-pr-check-pipeline  /  Publishing packages
0s
call-ci-main-pr-check-pipeline / Publishing packages
Fit to window
Zoom out
Zoom in

Annotations

1 error and 2 warnings
call-ci-main-pr-check-pipeline / BlackDuck-Polaris-SAST
Workflow failed! Exit Code: 2 Error from adapter end
call-ci-main-pr-check-pipeline / PUBLIC Sonar SAST scan / SonarQube
Removing 172.182.226.209 from the Storage Account Firewall, Please Wait...
call-ci-main-pr-check-pipeline / PUBLIC Sonar SAST scan / SonarQube
adding 172.182.226.209 To Storage Account Firewall, Please Wait...

Artifacts

Produced during runtime
Name Size Digest
chef-chef-server-20251209092505-GitHub-sbom.json Expired
37.7 KB
sha256:de3dd6f780f5fcb8ff2918546d4f88cec8a6fc3457fb11ea6cbf823c2d4f3b9e
chef-chef-server-4129-merge-15.10.63--20251209092457-Trivy.json Expired
2.92 KB
sha256:73a30505927b62e38efc992bcb7771ca06ac0fbb7bf1c53f0c8cbffbbb1dfed6
chef-chef-server-4129-merge-15.10.63--20251209092457-Trivy.txt Expired
1.81 KB
sha256:be0401e40bd60bddc3c1327761baf157c338d3e060223c8a294141196782459a
chef-chef-server-4129-merge-15.10.63-20251209092505-GitHub-sbom.csv Expired
15.3 KB
sha256:b0409952961f8400f824fc413175df07608d09ce94dbe61f85c06a6189d3084d
chef-chef-server-4129-merge-20251209092512-scc-complexity.html Expired
41.2 KB
sha256:f16ec7a2e5768d39f2efb3687192ebbb6d58aeb89518662495ab8437775eafe7
chef-chef-server-4129-merge-20251209092512-scc-complexity.json Expired
54.1 KB
sha256:05d2653f439f8ee3e2a1a08284cca51900a37559afc85485a4c1b58266323541
chef-chef-server-4129-merge-20251209092512-scc-complexity.txt Expired
1.12 KB
sha256:ccd86cd2b54b72ef0af2d447f51ce2908dc78f6241df48fa2c56e5e5e1fd3657