Skip to content

Fix KICS findings

Fix KICS findings #46

Triggered via pull request December 3, 2024 09:38
Status Success
Total duration 1m 5s
Artifacts
This run and associated checks have been archived and are scheduled for deletion. Learn more about checks retention

kics.yml

on: pull_request
Fit to window
Zoom out
Zoom in

Annotations

11 warnings
kics
ubuntu-latest pipelines will use ubuntu-24.04 soon. For more details, see https://github.com/actions/runner-images/issues/10636
[LOW] Unpinned Package Version: roles/beats/tasks/filebeat.yml#L44
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
[LOW] Unpinned Package Version: roles/beats/tasks/filebeat.yml#L58
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
[LOW] Unpinned Package Version: roles/beats/tasks/metricbeat.yml#L72
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
[LOW] Unpinned Package Version: roles/beats/tasks/auditbeat.yml#L62
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
[LOW] Unpinned Package Version: roles/beats/tasks/filebeat.yml#L70
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
[LOW] Unpinned Package Version: roles/beats/tasks/metricbeat.yml#L59
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
[LOW] Unpinned Package Version: roles/beats/tasks/auditbeat.yml#L74
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
[LOW] Unpinned Package Version: roles/beats/tasks/metricbeat.yml#L45
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
[INFO] Risky File Permissions: roles/elasticsearch/tasks/elasticsearch-security.yml#L138
Some modules could end up creating new files on disk with permissions that might be too open or unpredictable
[INFO] Risky File Permissions: roles/elasticsearch/tasks/elasticsearch-security.yml#L61
Some modules could end up creating new files on disk with permissions that might be too open or unpredictable