Skip to content

ngfw-15757 remediation of cybersecurity findings#1189

Open
DhirajM09 wants to merge 1 commit into
masterfrom
ngfw-15757-cybersecurity-findings-remediation
Open

ngfw-15757 remediation of cybersecurity findings#1189
DhirajM09 wants to merge 1 commit into
masterfrom
ngfw-15757-cybersecurity-findings-remediation

Conversation

@DhirajM09
Copy link
Copy Markdown
Contributor

@DhirajM09 DhirajM09 commented May 12, 2026

Changes

Path Finding(s) Action
uvm/hier/usr/lib/python3/dist-packages/uvm/login_tools.py # 8 Replaced an example TOTP base32 literal in a # documentation comment with an XXXX... placeholder. The comment shows the format of the per-appliance TOTP URI file; documentation intent is preserved.
i18ntools/translate.py # 5, # 6 Removed the dead process_google() function (already 100% commented out internally; contained the rotated-and-verified-dead Google Translate API key) and its caller in main(). The xx pseudo-locale path is unchanged; non-xx languages now load and save the PO file unchanged, which matches what the no-op function did before.
.arista/secret_allowlist.yaml # 1, # 3 Added two FALSE_POSITIVE entries with category and reason fields, matching the existing schema.

@mayur-dhande
Copy link
Copy Markdown
Contributor

@DhirajM09 shouldn't this be part of 17.5 release ?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants