Skip to content

Commit

Permalink
Security fixes (#102)
Browse files Browse the repository at this point in the history
* fixed: CVE-2021-23358
* Version: bumped installation packages version
* Actions: remove unused code
  • Loading branch information
Biscgit authored Dec 8, 2024
1 parent 3af14f8 commit a153d48
Show file tree
Hide file tree
Showing 3 changed files with 4 additions and 11 deletions.
8 changes: 0 additions & 8 deletions .github/workflows/ci.yml
Original file line number Diff line number Diff line change
Expand Up @@ -108,14 +108,6 @@ jobs:
- name: Checkout
uses: actions/checkout@v2

- name: Setup node
uses: actions/setup-node@v1
with:
node-version: "14"

- name: Install Node dependencies
run: npm install -g jsonlint

- name: Check fixtures
run: ./run-tests.sh --check-fixtures

Expand Down
5 changes: 3 additions & 2 deletions Dockerfile
Original file line number Diff line number Diff line change
Expand Up @@ -37,6 +37,7 @@ RUN yum install -y \
epel-release \
libuuid-devel \
rlwrap \
jq \
vim && \
yum groupinstall -y "Development Tools" && \
yum clean -y all
Expand All @@ -45,8 +46,8 @@ RUN echo "Will install xrootd version: $XROOTD_VERSION (latest if empty)" && \
yum install -y xrootd-"$XROOTD_VERSION" python3-xrootd-"$XROOTD_VERSION" && \
yum clean -y all

RUN pip uninstall pipenv -y && pip install --no-cache-dir --upgrade pip==20.2.4 setuptools==68.2.2 wheel==0.36.2 && \
npm install -g --unsafe-perm [email protected] [email protected] [email protected] [email protected] [email protected] [email protected] \
RUN pip uninstall pipenv -y && pip install --no-cache-dir --upgrade pip==24.3.1 setuptools==70.0.0 wheel==0.45.1 && \
npm install -g --unsafe-perm [email protected] [email protected] [email protected] [email protected] [email protected] \
@cernopendata/[email protected] [email protected]

# Make a relative link, so that if the directory is copied, it still works
Expand Down
2 changes: 1 addition & 1 deletion run-tests.sh
Original file line number Diff line number Diff line change
Expand Up @@ -37,7 +37,7 @@ check_black () {

check_fixtures () {
# check for possibly incorrect JSON files:
find cernopendata/modules/fixtures/data/ -name "*.json" -exec jsonlint -q {} \;
find cernopendata/modules/fixtures/data/ -name "*.json" -exec jq -re "." {} \; > /dev/null

# check record ID uniqueness:
dupes=$(jq '.[].recid' cernopendata/modules/fixtures/data/records/*.json | sort | uniq -d)
Expand Down

0 comments on commit a153d48

Please sign in to comment.