Tagging/auditbeat #412
Annotations
11 warnings
|
kics
Node.js 20 actions are deprecated. The following actions are running on Node.js 20 and may not work as expected: github/codeql-action/upload-sarif@af56b044b5d41c317aef5d19920b3183cb4fbbec. Actions will be forced to run with Node.js 24 by default starting June 2nd, 2026. Please check if updated versions of these actions are available that support Node.js 24. To opt into Node.js 24 now, set the FORCE_JAVASCRIPT_ACTIONS_TO_NODE24=true environment variable on the runner or in your workflow file. Once Node.js 24 becomes the default, you can temporarily opt out by setting ACTIONS_ALLOW_USE_UNSECURE_NODE_VERSION=true. For more information see: https://github.blog/changelog/2025-09-19-deprecation-of-node-20-on-github-actions-runners/
|
|
[LOW] Unpinned Package Version:
roles/beats/tasks/filebeat.yml#L70
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
|
|
[LOW] Unpinned Package Version:
roles/beats/tasks/metricbeat.yml#L45
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
|
|
[LOW] Unpinned Package Version:
roles/beats/tasks/metricbeat.yml#L72
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
|
|
[LOW] Unpinned Package Version:
roles/beats/tasks/filebeat.yml#L58
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
|
|
[LOW] Unpinned Package Version:
roles/beats/tasks/metricbeat.yml#L59
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
|
|
[LOW] Unpinned Package Version:
roles/beats/tasks/auditbeat.yml#L79
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
|
|
[LOW] Unpinned Package Version:
roles/beats/tasks/auditbeat.yml#L95
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
|
|
[LOW] Unpinned Package Version:
roles/beats/tasks/filebeat.yml#L44
Setting state to latest performs an update and installs additional packages possibly resulting in performance degradation or loss of service
|
|
[MEDIUM] Communication Over HTTP:
roles/kibana/tasks/kibana-default-index.yml#L5
Using HTTP URLs (without encryption) could lead to security vulnerabilities and risks
|
|
[MEDIUM] Communication Over HTTP:
roles/elasticsearch/tasks/main.yml#L268
Using HTTP URLs (without encryption) could lead to security vulnerabilities and risks
|