Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

feat(query): added CWE infos to common and dockerfile queries #6373 #6839

Merged

Conversation

Jeeppler
Copy link
Contributor

Closes #6373

Proposed Changes

  • added CWE information for all dockerfile queries
  • added CWE information for all common queries
  • small link fixes

I submit this contribution under the Apache-2.0 license.

@github-actions github-actions bot added community Community contribution query New query feature dockerfile labels Dec 28, 2023
@Jeeppler
Copy link
Contributor Author

It is not always clear what the most appropriate CWE for a query should be. The problem is, that CWE does not contain any categories which are specific to infrastructure-as-code.

@Jeeppler Jeeppler changed the title Added CWE infos to common and dockerfile queries #6373 feat(query): added CWE infos to common and dockerfile queries #6373 Dec 28, 2023
@github-actions github-actions bot added the feature request Community: new feature request label Dec 28, 2023
gabriel-cx
gabriel-cx previously approved these changes Jan 8, 2024
@gabriel-cx
Copy link
Contributor

Hi @Jeeppler ,

Thanks for this PR!
It looks great! We will merge it as soon as this PR is also merged.

@gabriel-cx gabriel-cx merged commit 6e9b9dd into Checkmarx:master Feb 7, 2024
21 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
community Community contribution dockerfile feature request Community: new feature request query New query feature
Projects
None yet
Development

Successfully merging this pull request may close these issues.

CWE taxonomy in SARIF report
3 participants