Ecosyste.ms: Issues

An open API service for providing issue and pull request metadata for open source projects.

GitHub / brave/security-action issues and pull requests

#496 - chore(deps): update dependency semgrep to ~=1.58.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment
Labels: puLL-Merge

#495 - loop.yml: add CodeQL permissions

Pull Request - State: closed - Opened by thypon about 1 year ago

#494 - chore(deps): update reviewdog/action-setup action to v1.2.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment

#493 - dependabot-dismiss.txt: dismiss CVE-2024-23331

Pull Request - State: closed - Opened by thypon about 1 year ago

#492 - fix(deps): update dependency @octokit/core to v5.1.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 2 comments

#491 - fix(deps): update dependency @slack/web-api to v7.0.1

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 2 comments
Labels: puLL-Merge

#490 - *: new workflow org-codeql

Pull Request - State: open - Opened by thypon about 1 year ago - 2 comments
Labels: needs-security-review, puLL-Merge

#489 - chore(deps): update dependency semgrep to ~=1.57.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment

#488 - action.yml: fix codeql

Pull Request - State: closed - Opened by thypon about 1 year ago - 1 comment

#487 - chore(deps): update tj-actions/changed-files action to v42

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment

#486 - Ignore rmp-serde crash

Pull Request - State: closed - Opened by diracdeltas about 1 year ago

#485 - CodeQL is broken

Issue - State: closed - Opened by thypon about 1 year ago
Labels: bug

#484 - chore(deps): update github/codeql-action action to v3.23.1

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment
Labels: puLL-Merge

#483 - chore(deps): update actions/cache action to v4

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment

#482 - chore(deps): update tj-actions/changed-files action to v41.1.2 - autoclosed

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment

#481 - Add some more ignored IDs

Pull Request - State: closed - Opened by diracdeltas about 1 year ago

#480 - fix(deps): update dependency @slack/web-api to v7

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 2 comments

#479 - *: use gh-to-slack-user-map

Pull Request - State: closed - Opened by thypon about 1 year ago

#478 - dependabotDismiss: better messaging and more hotwords

Pull Request - State: closed - Opened by thypon about 1 year ago

#477 - chore(deps): update tj-actions/changed-files action to v41.1.1

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 2 comments
Labels: puLL-Merge

#476 - org.yml: Add issues:write permission

Pull Request - State: closed - Opened by mschfh about 1 year ago

#475 - chore(deps): update dependency pip-audit to ~=2.7.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment
Labels: puLL-Merge

#474 - chore(deps): update actions/cache action to v3.3.3

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment
Labels: puLL-Merge

#473 - build(deps): bump follow-redirects from 1.15.3 to 1.15.4

Pull Request - State: closed - Opened by dependabot[bot] about 1 year ago - 1 comment
Labels: dependencies, javascript

#472 - chore(deps): update dependency semgrep to ~=1.56.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment
Labels: puLL-Merge

#471 - dependabotDismiss: add automatic ID dismiss from file

Pull Request - State: closed - Opened by thypon about 1 year ago

#470 - fix(deps): update dependency @slack/web-api to v6.11.2

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 2 comments

#469 - dependabot nudge: various improvements

Pull Request - State: closed - Opened by thypon about 1 year ago

#468 - chore(deps): update github/codeql-action action to v3.23.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment

#467 - dependabotDismiss.js: fix dismiss when empty list

Pull Request - State: closed - Opened by thypon about 1 year ago

#466 - semgrep rules: January 2024 Update

Pull Request - State: closed - Opened by thypon about 1 year ago - 3 comments
Labels: needs-security-review, puLL-Merge

#465 - chore(deps): update dependency semgrep to ~=1.55.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment
Labels: puLL-Merge

#464 - fix(deps): update dependency @slack/web-api to v6.11.1

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 2 comments

#463 - bugfix: fat filters

Pull Request - State: closed - Opened by thypon about 1 year ago

#462 - dependabotNudge: smaller description

Pull Request - State: closed - Opened by thypon about 1 year ago

#461 - chore(deps): update tj-actions/changed-files action to v41.0.1

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment

#460 - chore(deps): update dependency brakeman to v6.1.1

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment

#459 - chore(deps): update tj-actions/changed-files action to v41

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment
Labels: puLL-Merge

#458 - *workflows*: add workflow_dispatch

Pull Request - State: closed - Opened by thypon about 1 year ago

#457 - chore(deps): update github/codeql-action action to v3.22.12

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#456 - getMaintainers: fix github link

Pull Request - State: closed - Opened by thypon about 1 year ago

#455 - New function: getMaintainers

Pull Request - State: closed - Opened by thypon about 1 year ago

#454 - Fix npm-audit when there are wild package.json files

Pull Request - State: closed - Opened by bcaller about 1 year ago

#453 - New workflows: add-maintainer-custom-property, dependabot-nudge

Pull Request - State: closed - Opened by thypon about 1 year ago - 1 comment

#452 - chore(deps): update dependency semgrep to ~=1.54.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#451 - chore(deps): update reviewdog/action-setup action to v1.1.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#450 - False positive `GURL original...` v. `GURL origin`

Issue - State: open - Opened by fmarier about 1 year ago - 2 comments
Labels: bug

#449 - chore(deps): update tj-actions/changed-files action to v40.2.3

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#448 - Rails sanitize_sql is misleading. It is identity function on strings.

Pull Request - State: closed - Opened by bcaller about 1 year ago
Labels: needs-security-review

#446 - chore(deps): update github/codeql-action action to v3

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#445 - chore(deps): update dependency semgrep to ~=1.53.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#444 - chore(deps): update github/codeql-action action to v2.22.10

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#443 - chore(deps): update tj-actions/changed-files action to v40.2.2

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#442 - Fix no-new-privileges separator

Pull Request - State: closed - Opened by bcaller about 1 year ago
Labels: needs-security-review

#441 - Fix no-new-privileges separator

Issue - State: closed - Opened by thypon about 1 year ago
Labels: bug

#440 - chore(deps): update github/codeql-action action to v2.22.9

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#439 - action.yml: add specific `unverified-commits` label

Pull Request - State: closed - Opened by thypon about 1 year ago

#438 - chore(deps): update dependency semgrep to ~=1.52.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#437 - chore(deps): update dependency brakeman to v6.1.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#436 - chore(deps): update tj-actions/changed-files action to v40.2.1

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#435 - semgrep_rules: December update

Pull Request - State: closed - Opened by thypon about 1 year ago - 2 comments
Labels: needs-security-review

#434 - False positive with typo checker in `if` statements

Issue - State: closed - Opened by fmarier about 1 year ago - 1 comment
Labels: bug, wontfix

#433 - chore(deps): update actions/github-script action to v7

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago

#432 - Comment when commit isn't verified

Pull Request - State: closed - Opened by bcaller about 1 year ago - 11 comments
Labels: needs-security-review

#431 - chore(deps): update tj-actions/changed-files action to v40.2.0

Pull Request - State: closed - Opened by renovate[bot] about 1 year ago - 1 comment

#430 - Issue with chromium-raw-ptr

Issue - State: closed - Opened by bcaller about 1 year ago
Labels: bug

#429 - chore(deps): update dependency semgrep to ~=1.51.0

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago - 1 comment

#428 - chore(deps): update github/codeql-action action to v2.22.8

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago - 1 comment

#427 - chore(deps): update actions/github-script action to v7

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago - 1 comment

#426 - False positive: memset(foo 0, sizeof(foo))

Issue - State: open - Opened by fmarier over 1 year ago
Labels: bug

#425 - New ruleset: use least privilege if possible when calling `SetBindings`

Issue - State: open - Opened by thypon over 1 year ago
Labels: enhancement

#424 - New ruleset for `ExposeInterfacesToRenderer` and `RegisterBrowserInterfaceBindersForFrame` in `brave-core`

Issue - State: open - Opened by thypon over 1 year ago - 1 comment
Labels: enhancement

#423 - brave-isolated-world.yaml: fix assignees

Pull Request - State: closed - Opened by thypon over 1 year ago

#422 - brave-isolated-world.yaml: fix source link

Pull Request - State: closed - Opened by thypon over 1 year ago

#421 - chore(deps): update tj-actions/changed-files action to v40.1.1

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#420 - New rule: missing-noopener-window-open-native.yaml

Pull Request - State: closed - Opened by thypon over 1 year ago

#419 - semgrep_rules: November update

Pull Request - State: closed - Opened by thypon over 1 year ago

#418 - chore(deps): update tj-actions/changed-files action to v40.1.0

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#417 - Exempt SecureLink from scheme checks #414

Pull Request - State: closed - Opened by bcaller over 1 year ago
Labels: needs-security-review

#416 - chore(deps): update tj-actions/changed-files action to v40.0.2

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#415 - chore(deps): update awalsh128/cache-apt-pkgs-action digest to 44c33b3

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago - 1 comment

#414 - Exempt SecureLink from scheme checks

Issue - State: closed - Opened by fmarier over 1 year ago - 1 comment
Labels: bug

#413 - chore(deps): update github/codeql-action action to v2.22.5

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#412 - New ruleset to catch `v8::Function`

Issue - State: open - Opened by thypon over 1 year ago
Labels: enhancement

#411 - New rule: brave-execute-script.yaml

Pull Request - State: closed - Opened by thypon over 1 year ago
Labels: needs-security-review

#410 - chore(deps): update tj-actions/changed-files action to v40

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#409 - chore(deps): update tj-actions/changed-files action to v39.2.4

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#407 - chore(deps): update dependency semgrep to ~=1.48.0

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#406 - Fork generic.nginx.security.request-host-used.request-host-used

Pull Request - State: closed - Opened by bcaller over 1 year ago - 2 comments
Labels: needs-security-review

#404 - chore(deps): update tj-actions/changed-files action to v39.2.3

Pull Request - State: open - Opened by renovate[bot] over 1 year ago

#403 - CalledOnValidThread fix

Pull Request - State: closed - Opened by thypon over 1 year ago
Labels: needs-security-review

#402 - chore(deps): update github/codeql-action action to v2.22.3

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#401 - New workflow: older-than-2y

Pull Request - State: closed - Opened by thypon over 1 year ago

#400 - False positive with CalledOnValidThread()

Issue - State: closed - Opened by fmarier over 1 year ago
Labels: bug

#399 - chore(deps): update github/codeql-action action to v2.22.2

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#398 - chore(deps): update tj-actions/changed-files action to v39.2.2

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#397 - chore(deps): update dependency semgrep to ~=1.44.0

Pull Request - State: closed - Opened by renovate[bot] over 1 year ago

#395 - More false positives for C++ if(typ var = ..)

Pull Request - State: closed - Opened by bcaller over 1 year ago
Labels: needs-security-review