Skip to content

Conversation

@manuel-sommer
Copy link
Contributor

No description provided.

@dryrunsecurity
Copy link

dryrunsecurity bot commented Nov 4, 2025

DryRun Security

🔴 Risk threshold exceeded.

This pull request modifies a sensitive file (dojo/middleware.py); the scanner flagged it as a configured sensitive edit and suggests configuring sensitive file paths and allowed authors in .dryrunsecurity.yaml. No blocking action was taken but the change is marked at a failing risk threshold.

🔴 Configured Codepaths Edit in dojo/middleware.py
Vulnerability Configured Codepaths Edit
Description Sensitive edits detected for this file. Sensitive file paths and allowed authors can be configured in .dryrunsecurity.yaml.

We've notified @mtesauro.


All finding details can be found in the DryRun Security Dashboard.

@valentijnscholten valentijnscholten added this to the 2.52.1 milestone Nov 4, 2025
@manuel-sommer
Copy link
Contributor Author

can we merge this @valentijnscholten ? Then, I can continue with #13596

@valentijnscholten valentijnscholten merged commit 1d68128 into DefectDojo:bugfix Nov 5, 2025
149 checks passed
@manuel-sommer manuel-sommer deleted the advance_middleware_socialauth branch November 5, 2025 09:22
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants