Skip to content

Commit 01215f1

Browse files
fix(iast): add some modules to the denylist [backport 2.15] (#11432)
Backport 343ba22 from #11418 to 2.15. ## Checklist - [X] PR author has checked that all the criteria below are met - The PR description includes an overview of the change - The PR description articulates the motivation for the change - The change includes tests OR the PR description describes a testing strategy - The PR description notes risks associated with the change, if any - Newly-added code is easy to change - The change follows the [library release note guidelines](https://ddtrace.readthedocs.io/en/stable/releasenotes.html) - The change includes or references documentation updates if necessary - Backport labels are set (if [applicable](https://ddtrace.readthedocs.io/en/latest/contributing.html#backporting)) ## Reviewer Checklist - [x] Reviewer has checked that all the criteria below are met - Title is accurate - All changes are related to the pull request's stated goal - Avoids breaking [API](https://ddtrace.readthedocs.io/en/stable/versioning.html#interfaces) changes - Testing strategy adequately addresses listed risks - Newly-added code is easy to change - Release note makes sense to a user of the library - If necessary, author has acknowledged and discussed the performance implications of this PR as reported in the benchmarks PR comment - Backport labels are set in a manner that is consistent with the [release branch maintenance policy](https://ddtrace.readthedocs.io/en/latest/contributing.html#backporting) Co-authored-by: Juanjo Alvarez Martinez <[email protected]>
1 parent 39e8b92 commit 01215f1

File tree

2 files changed

+7
-1
lines changed

2 files changed

+7
-1
lines changed

ddtrace/appsec/_iast/_ast/ast_patching.py

Lines changed: 3 additions & 1 deletion
Original file line numberDiff line numberDiff line change
@@ -302,6 +302,9 @@
302302
"httpcore.",
303303
"google.auth.",
304304
"googlecloudsdk.",
305+
"umap.",
306+
"pynndescent.",
307+
"numba.",
305308
)
306309

307310

@@ -367,7 +370,6 @@ def visit_ast(
367370
module_name: Text = "",
368371
) -> Optional[str]:
369372
parsed_ast = ast.parse(source_text, module_path)
370-
371373
_VISITOR.update_location(filename=module_path, module_name=module_name)
372374
modified_ast = _VISITOR.visit(parsed_ast)
373375

Lines changed: 4 additions & 0 deletions
Original file line numberDiff line numberDiff line change
@@ -0,0 +1,4 @@
1+
---
2+
fixes:
3+
- |
4+
Code Security: add umap, numba and pynndescent to the Code Security denylist.

0 commit comments

Comments
 (0)