commit | 76db176c7ee01adda0369793af2fecbd07f67d51 | [log] [tgz] |
---|---|---|
author | jskunda <jskunda@redhat.com> | Thu Sep 29 11:14:34 2022 +0000 |
committer | jskunda <jskunda@redhat.com> | Mon Oct 10 12:39:23 2022 +0000 |
tree | 4baa32d0ee092cfa83449c6e6d732e86b5346ea7 | |
parent | 4ff6f153b11575b1acad34655310b68dfc9fba93 [diff] |
Fix security vulnerabilities using Bandit Tempest was using: -python module xml.etree[1], It was vulnerable to different atacks. Instead of xml.etree.ElementTree tempest is now using defusedxml.ElementTree which is more secure. [1] https://bandit.readthedocs.io/en/1.7.0/blacklists/blacklist_calls.html B313 Change-Id: I50a8ab3c3be2decccd7480ecf00f1a3e4a75f172