From c99f5d38f97a7588205577c0f34fc28574aa1878 Mon Sep 17 00:00:00 2001 From: "dependabot[bot]" <49699333+dependabot[bot]@users.noreply.github.com> Date: Wed, 14 Feb 2024 22:37:31 +0000 Subject: [PATCH 1/2] Bump wangyoucao577/go-release-action from 1.47 to 1.48 Bumps [wangyoucao577/go-release-action](https://github.com/wangyoucao577/go-release-action) from 1.47 to 1.48. - [Release notes](https://github.com/wangyoucao577/go-release-action/releases) - [Commits](https://github.com/wangyoucao577/go-release-action/compare/v1.47...v1.48) --- updated-dependencies: - dependency-name: wangyoucao577/go-release-action dependency-type: direct:production update-type: version-update:semver-minor ... Signed-off-by: dependabot[bot] --- .github/workflows/release-command.yml | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/.github/workflows/release-command.yml b/.github/workflows/release-command.yml index db75a3b..acb15d7 100644 --- a/.github/workflows/release-command.yml +++ b/.github/workflows/release-command.yml @@ -27,7 +27,7 @@ jobs: goos: windows steps: - uses: actions/checkout@v4 - - uses: wangyoucao577/go-release-action@v1.47 + - uses: wangyoucao577/go-release-action@v1.48 with: github_token: ${{ secrets.GITHUB_TOKEN }} goos: ${{ matrix.goos }} From fcf3c8c0fa4b99504022697e8d272283ec77623e Mon Sep 17 00:00:00 2001 From: "kayos@tcp.direct" Date: Wed, 14 Feb 2024 22:15:12 -0800 Subject: [PATCH 2/2] Fix[CI][SAST]: Resolve gosec false positive --- internal/config/logger.go | 5 +++-- 1 file changed, 3 insertions(+), 2 deletions(-) diff --git a/internal/config/logger.go b/internal/config/logger.go index 47be28e..a170e9e 100644 --- a/internal/config/logger.go +++ b/internal/config/logger.go @@ -45,8 +45,9 @@ func StartLogger(pretty bool, targets ...io.Writer) zerolog.Logger { logFile = io.MultiWriter(targets...) default: CurrentLogFile = path.Join(logDir, logFileName+".log") - /* #nosec */ - if logFile, err = os.OpenFile(CurrentLogFile, os.O_RDWR|os.O_CREATE|os.O_APPEND, 0o666); err != nil { + + logFile, err = os.OpenFile(CurrentLogFile, os.O_RDWR|os.O_CREATE|os.O_APPEND, 0o666) // #nosec G304 G302 + if err != nil { println("cannot create log file: " + err.Error()) os.Exit(1) }