Skip to content

Merge pull request #230 from AikidoSec/improve-shell-injection-detector #33

Merge pull request #230 from AikidoSec/improve-shell-injection-detector

Merge pull request #230 from AikidoSec/improve-shell-injection-detector #33

Triggered via push February 3, 2026 17:11
Status Failure
Total duration 13m 35s
Artifacts 1

qa-tests.yml

on: push
Fit to window
Zoom out
Zoom in

Annotations

10 errors and 10 warnings
qa-tests
2026-02-03 17:21:31,087 - ERROR - Error in test test_stored_ssrf_no_context: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_stored_ssrf_no_context/test.py", line 49, in check_ssrf_with_event<br>`AssertionError: Status codes are not the same, expected 200, got 404 - []`
qa-tests
2026-02-03 17:21:30,883 - ERROR - Error running test: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_stored_ssrf_no_context/test.py", line 49, in check_ssrf_with_event<br>`AssertionError: Status codes are not the same, expected 200, got 404 - []`
qa-tests
2026-02-03 17:21:12,746 - ERROR - Error in test test_path_traversal: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_path_traversal/test.py", line 36, in check_path_traversal<br>`AssertionError: Status code should be different from 200. Message: Path traversal check failed for /api/read2?path=../secrets/key.txt {C0d3_Br3ak3r_4_L1f3!}`
qa-tests
2026-02-03 17:21:12,551 - ERROR - Error running test: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_path_traversal/test.py", line 36, in check_path_traversal<br>`AssertionError: Status code should be different from 200. Message: Path traversal check failed for /api/read2?path=../secrets/key.txt {C0d3_Br3ak3r_4_L1f3!}`
qa-tests
2026-02-03 17:21:10,472 - ERROR - Error in test test_ssrf: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_ssrf/test.py", line 77, in check_ssrf_with_event<br>`AssertionError: Status codes are not the same, expected 500, got 200 - None`
qa-tests
2026-02-03 17:21:10,284 - ERROR - Error running test: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_ssrf/test.py", line 77, in check_ssrf_with_event<br>`AssertionError: Status codes are not the same, expected 500, got 200 - None`
qa-tests
2026-02-03 17:20:33,411 - ERROR - Error in test test_force_protection_off: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_force_protection_off/test.py", line 16, in check_force_protection_off<br>`AssertionError: Status codes are not the same, expected 200, got 500 - shell injection`
qa-tests
2026-02-03 17:20:33,236 - ERROR - Error running test: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_force_protection_off/test.py", line 16, in check_force_protection_off<br>`AssertionError: Status codes are not the same, expected 200, got 500 - shell injection`
qa-tests
2026-02-03 17:19:19,537 - ERROR - Error in test test_stored_ssrf: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_stored_ssrf/test.py", line 73, in check_ssrf_with_event<br>`AssertionError: Status codes are not the same, expected 500, got 404 - []`
qa-tests
2026-02-03 17:19:19,326 - ERROR - Error running test: File "/home/runner/work/_actions/AikidoSec/firewall-tester-action/v1.0.7/server_tests/test_stored_ssrf/test.py", line 73, in check_ssrf_with_event<br>`AssertionError: Status codes are not the same, expected 500, got 404 - []`
build-package: Aikido.Zen.Test/ConcurrentLFUDictionaryTests.cs#L26
Nullability of type of parameter 'obj' doesn't match overridden member (possibly because of nullability attributes).
build-package
Targeting .NET 10.0 or higher in Visual Studio 2022 17.14 is not supported.
build-package: Aikido.Zen.DotNetCore/Zen.cs#L11
Field 'Zen._httpContextAccessor' is never assigned to, and will always have its default value null
build-package
Targeting .NET 10.0 or higher in Visual Studio 2022 17.14 is not supported.
build-package: Aikido.Zen.DotNetCore/Zen.cs#L11
Field 'Zen._httpContextAccessor' is never assigned to, and will always have its default value null
build-package: Aikido.Zen.DotNetCore/Zen.cs#L11
Field 'Zen._httpContextAccessor' is never assigned to, and will always have its default value null
build-package: Aikido.Zen.DotNetCore/Zen.cs#L11
Field 'Zen._httpContextAccessor' is never assigned to, and will always have its default value null
build-package: Aikido.Zen.DotNetCore/Zen.cs#L11
Field 'Zen._httpContextAccessor' is never assigned to, and will always have its default value null
build-package: Aikido.Zen.Core/Agent.cs#L264
The variable 'ex' is declared but never used
build-package: Aikido.Zen.Core/Agent.cs#L143
Because this call is not awaited, execution of the current method continues before the call is completed. Consider applying the 'await' operator to the result of the call.

Artifacts

Produced during runtime
Name Size Digest
nuget-package
42.6 MB
sha256:14c6cc992d78e0bd1590909e529709c28807668c8e08bb90df5d0badb67c12d7