Skip to content

Kics

Kics #116

Triggered via schedule July 31, 2023 00:53
Status Failure
Total duration 3m 55s
Artifacts
This run and associated checks have been archived and are scheduled for deletion. Learn more about checks retention

kics.yaml

on: schedule
Fit to window
Zoom out
Zoom in

Annotations

1 error and 10 warnings
Kics / Kics Scan
KICS scan failed with exit code 50
[HIGH] Passwords And Secrets - Generic Password: tests/docker/couchdb-docker-compose.yml#L27
Query to find passwords and secrets in infrastructure code.
[HIGH] Passwords And Secrets - Generic Secret: tests/docker/minio-docker-compose.yml#L27
Query to find passwords and secrets in infrastructure code.
[HIGH] Privileged Containers Enabled: tests/docker/common.yml#L1
Privileged containers should be used with extreme caution, they have all of the capabilities that the linux kernel offers for docker.
[HIGH] Privileged Containers Enabled: tests/docker/common.yml#L1
Privileged containers should be used with extreme caution, they have all of the capabilities that the linux kernel offers for docker.
[HIGH] Privileged Containers Enabled: tests/docker/common.yml#L1
Privileged containers should be used with extreme caution, they have all of the capabilities that the linux kernel offers for docker.
[HIGH] Privileged Containers Enabled: tests/docker/common.yml#L1
Privileged containers should be used with extreme caution, they have all of the capabilities that the linux kernel offers for docker.
[MEDIUM] Container Traffic Not Bound To Host Interface: tests/docker/common.yml#L1
Incoming container traffic should be bound to a specific host interface
[MEDIUM] Container Traffic Not Bound To Host Interface: tests/docker/common.yml#L1
Incoming container traffic should be bound to a specific host interface
[MEDIUM] Container Traffic Not Bound To Host Interface: tests/docker/common.yml#L1
Incoming container traffic should be bound to a specific host interface
[MEDIUM] Container Traffic Not Bound To Host Interface: tests/docker/common.yml#L1
Incoming container traffic should be bound to a specific host interface