Pickle usages in packages related to remote ssh should be marked as nosec for bandit
Bug #1552465 reported by
Michael McCune
This bug affects 1 person
Affects | Status | Importance | Assigned to | Milestone | |
---|---|---|---|---|---|
Sahara |
Fix Released
|
Low
|
Michael McCune |
Bug Description
The modules sahara.
At this time, the modules should have their usages of pickle marked as nosec according to the bandit documentation[1], and they should also be marked with TODOs to investigate alternative usages to improve the security hardening in this area.
[1]: https:/
Changed in sahara: | |
milestone: | none → mitaka-3 |
To post a comment you must log in.
Fix proposed to branch: master /review. openstack. org/287522
Review: https:/