Skip to content

CHEF-28294: Fix CVE-2025-61780 - Update rack gem to >= 3.1.18 (#4129) #220

CHEF-28294: Fix CVE-2025-61780 - Update rack gem to >= 3.1.18 (#4129)

CHEF-28294: Fix CVE-2025-61780 - Update rack gem to >= 3.1.18 (#4129) #220

Triggered via push December 9, 2025 09:26
Status Success
Total duration 3m 35s
Artifacts 7
call-ci-main-pr-check-pipeline  /  Checkout repository
8s
call-ci-main-pr-check-pipeline / Checkout repository
Echo stub version
3s
Echo stub version
call-ci-main-pr-check-pipeline  /  Pre-compilation checks
6s
call-ci-main-pr-check-pipeline / Pre-compilation checks
call-ci-main-pr-check-pipeline  /  Generate a simple slug based on repo and date for use in any output artifacts
3s
call-ci-main-pr-check-pipeline / Generate a simple slug based on repo and date for use in any output artifacts
call-ci-main-pr-check-pipeline  /  Build and compilation
3s
call-ci-main-pr-check-pipeline / Build and compilation
call-ci-main-pr-check-pipeline  /  ...  /  Complexity and SLOC generation
29s
call-ci-main-pr-check-pipeline / Source code complexity checks / Complexity and SLOC generation
call-ci-main-pr-check-pipeline  /  Language-specific pre-compilation steps and linting
0s
call-ci-main-pr-check-pipeline / Language-specific pre-compilation steps and linting
call-ci-main-pr-check-pipeline  /  Language-agnostic pre-compilation steps
0s
call-ci-main-pr-check-pipeline / Language-agnostic pre-compilation steps
call-ci-main-pr-check-pipeline  /  ...  /  Trufflehog
24s
call-ci-main-pr-check-pipeline / Trufflehog scan / Trufflehog
call-ci-main-pr-check-pipeline  /  ...  /  Trivy dependency vulnerability scan
29s
call-ci-main-pr-check-pipeline / Trivy scan / Trivy dependency vulnerability scan
call-ci-main-pr-check-pipeline  /  BlackDuck-Polaris-SAST
30s
call-ci-main-pr-check-pipeline / BlackDuck-Polaris-SAST
call-ci-main-pr-check-pipeline  /  Creating packaged binaries
call-ci-main-pr-check-pipeline / Creating packaged binaries
call-ci-main-pr-check-pipeline  /  ...  /  Export SBOM from GitHub Dependency Graph API
38s
call-ci-main-pr-check-pipeline / Generating SBOM / Export SBOM from GitHub Dependency Graph API
call-ci-main-pr-check-pipeline  /  ...  /  Generate SBOM using Blackduck Tool (BLUE)
55s
call-ci-main-pr-check-pipeline / Generating SBOM / Generate SBOM using Blackduck Tool (BLUE)
call-ci-main-pr-check-pipeline  /  ...  /  Generate MSFT SBOM
call-ci-main-pr-check-pipeline / Generating SBOM / Generate MSFT SBOM
call-ci-main-pr-check-pipeline  /  ...  /  license_scout
call-ci-main-pr-check-pipeline / Generating SBOM / license_scout
call-ci-main-pr-check-pipeline  /  Detect SBOM version for application
call-ci-main-pr-check-pipeline / Detect SBOM version for application
call-ci-main-pr-check-pipeline  /  ...  /  SonarQube
3m 6s
call-ci-main-pr-check-pipeline / PUBLIC Sonar SAST scan / SonarQube
call-ci-main-pr-check-pipeline  /  PRIVATE Sonar scan (inline)
call-ci-main-pr-check-pipeline / PRIVATE Sonar scan (inline)
call-ci-main-pr-check-pipeline  /  ...  /  Checkout code
call-ci-main-pr-check-pipeline / INTERNAL Sonar scan / Checkout code
call-ci-main-pr-check-pipeline  /  ...  /  SonarQube
call-ci-main-pr-check-pipeline / INTERNAL Sonar scan / SonarQube
call-ci-main-pr-check-pipeline  /  ...  /  build
call-ci-main-pr-check-pipeline / INTERNAL Sonar scan / build
call-ci-main-pr-check-pipeline  /  ...  /  unit-tests
call-ci-main-pr-check-pipeline / INTERNAL Sonar scan / unit-tests
Matrix: call-ci-main-pr-check-pipeline / Unit tests
call-ci-main-pr-check-pipeline  /  Creating Habitat packages
0s
call-ci-main-pr-check-pipeline / Creating Habitat packages
call-ci-main-pr-check-pipeline  /  ...  /  irfan
call-ci-main-pr-check-pipeline / Reporting to quality dashboard / irfan
call-ci-main-pr-check-pipeline  /  Publishing packages
0s
call-ci-main-pr-check-pipeline / Publishing packages
Fit to window
Zoom out
Zoom in

Annotations

1 error and 2 warnings
call-ci-main-pr-check-pipeline / BlackDuck-Polaris-SAST
Workflow failed! Exit Code: 2 Error from adapter end
call-ci-main-pr-check-pipeline / PUBLIC Sonar SAST scan / SonarQube
Removing 135.232.201.248 from the Storage Account Firewall, Please Wait...
call-ci-main-pr-check-pipeline / PUBLIC Sonar SAST scan / SonarQube
adding 135.232.201.248 To Storage Account Firewall, Please Wait...

Artifacts

Produced during runtime
Name Size Digest
chef-chef-server-20251209092728-GitHub-sbom.json Expired
35.9 KB
sha256:1d2e3fc773b8737ffa2fcb9addbb9151544ebf87247bef82de48f8639c007a69
chef-chef-server-main-15.10.63--20251209092723-Trivy.json Expired
3.38 KB
sha256:dbaddad4bf4ff07d65158205c80a91b349265b15e7580724593f4d03dc95992e
chef-chef-server-main-15.10.63--20251209092723-Trivy.txt Expired
1.81 KB
sha256:ee45f5cac89de0d97d253120369be49583f860cc45bef6f0407adc9b786802ba
chef-chef-server-main-15.10.63-20251209092728-GitHub-sbom.csv Expired
15 KB
sha256:075a74be9718c97eaa12fc469b85508dd35b994a151c89b7597d5952e1ca0774
chef-chef-server-main-20251209092740-scc-complexity.html Expired
41.3 KB
sha256:3f4c234ed520e80fbf1f869b505654426efc6fc0399d314757579426ab54c006
chef-chef-server-main-20251209092740-scc-complexity.json Expired
54.1 KB
sha256:907a5f6b00479ceb59b72daa2166f691a7fec5f4455e089164d9c686b43d77ba
chef-chef-server-main-20251209092740-scc-complexity.txt Expired
1.11 KB
sha256:98fcc91dc57d486c64e3f6547c33821579aee142be00d5344ce7c3718c57090a