release: Prepare RC5 Release #266
448 new alerts including 5 critical severity security vulnerabilities
New alerts in code changed by this pull request
Security Alerts:
- 5 critical
- 52 high
- 2 medium
Other Alerts:
- 42 errors
- 114 warnings
- 233 notes
Alerts not introduced by this pull request might have been detected because the code changes were too large.
See annotations below for details.
Annotations
Check warning on line 97 in .github/workflows/ci.yml
Code scanning / CodeQL
Workflow does not contain permissions Medium
Check failure on line 83 in qa/rpc-tests/test_framework/test_framework.py
Code scanning / CodeQL
Wrong number of arguments in a call Error test
with too many arguments; should be no more than 0.
Check failure on line 101 in qa/rpc-tests/test_framework/test_framework.py
Code scanning / CodeQL
Wrong number of arguments in a call Error test
with too many arguments; should be no more than 0.
Check warning on line 67 in share/qt/extract_strings_qt.py
Code scanning / CodeQL
File is not always closed Warning
Check failure on line 42 in share/rpcauth/rpcauth.py
Code scanning / CodeQL
Clear-text logging of sensitive information High
as clear text.
Check failure on line 43 in share/rpcauth/rpcauth.py
Code scanning / CodeQL
Clear-text logging of sensitive information High
as clear text.
Check failure on line 107 in src/addrdb.cpp
Code scanning / CodeQL
File created without restricting permissions High
Check notice on line 813 in src/chainparams.cpp
Code scanning / CodeQL
Commented-out code Note
Check warning on line 121 in src/crc32c/.ycm_extra_conf.py
Code scanning / CodeQL
File is not always closed Warning
Check notice on line 256 in src/crypto/KeccakP-800-reference.cpp
Code scanning / CodeQL
Unused static function Note
Check notice on line 267 in src/crypto/KeccakP-800-reference.cpp
Code scanning / CodeQL
Unused static function Note
Check notice on line 10 in src/crypto/aes.cpp
Code scanning / CodeQL
Include header files only Note
Check notice on line 12 in src/crypto/aes.cpp
Code scanning / CodeQL
No raw arrays in interfaces Note
Check notice on line 22 in src/crypto/aes.cpp
Code scanning / CodeQL
No raw arrays in interfaces Note
Check notice on line 27 in src/crypto/aes.cpp
Code scanning / CodeQL
No raw arrays in interfaces Note
Check notice on line 37 in src/crypto/aes.cpp
Code scanning / CodeQL
No raw arrays in interfaces Note
Check failure on line 106 in src/crypto/aes.cpp
Code scanning / CodeQL
Incorrect 'not' operator usage High
Check notice on line 120 in src/crypto/aes.cpp
Code scanning / CodeQL
No raw arrays in interfaces Note
Check notice on line 136 in src/crypto/aes.cpp
Code scanning / CodeQL
No raw arrays in interfaces Note
Check warning on line 75 in src/crypto/chacha20.cpp
Code scanning / CodeQL
Poorly documented large function Warning
Check warning on line 183 in src/crypto/chacha20.cpp
Code scanning / CodeQL
Poorly documented large function Warning
Check notice on line 74 in src/crypto/echo.cpp
Code scanning / CodeQL
Include header files only Note
Check notice on line 31 in src/crypto/hashqubit.h
Code scanning / CodeQL
Commented-out code Note
Check notice on line 15 in src/crypto/hkdf_sha256_32.cpp
Code scanning / CodeQL
No raw arrays in interfaces Note
Check notice on line 35 in src/crypto/hmac_sha256.cpp
Code scanning / CodeQL
No raw arrays in interfaces Note