Skip to content

Conversation

@iamgusain
Copy link
Contributor

@iamgusain iamgusain commented Oct 7, 2024

Fixing issue reported by CodeQL

Removing code path in testing libraries (keyvault and labapi) which uses TrustManager that accepts all certificates for SSL verification. This code path is not secure and can lead to potential security vulnerabilities and should not be used in production code.

AB#3064771

@iamgusain iamgusain requested a review from a team as a code owner October 7, 2024 20:36
@github-actions
Copy link

github-actions bot commented Oct 7, 2024

❌ Work item link check failed. Description does not contain AB#{ID}.

Click here to Learn more.

@github-actions
Copy link

✅ Work item link check complete. Description contains link AB#3064771 to an Azure Boards work item.

@github-actions github-actions bot changed the title Fix - [CodeQL.SM03853] Removing TrustManager that accepts all certificates Fix - [CodeQL.SM03853] Removing that accepts all certificates, Fixes AB#3064771 Oct 10, 2024
@iamgusain iamgusain added Test Issue pertains to or stems from tests or test environment No-Changelog This Pull-Request has no associated changelog entry. labels Oct 10, 2024
@iamgusain iamgusain merged commit bbbf2b0 into dev Oct 14, 2024
44 of 52 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

No-Changelog This Pull-Request has no associated changelog entry. Test Issue pertains to or stems from tests or test environment

Projects

None yet

Development

Successfully merging this pull request may close these issues.

4 participants