@@ -138,7 +138,7 @@ func setupInsecureBuildxBuilder(t *testing.T, builderName string) func() {
138138 http = true
139139 insecure = true
140140` , registryHost )
141- require .NoError (t , os .WriteFile (configPath , []byte (configContent ), 0644 ))
141+ require .NoError (t , os .WriteFile (configPath , []byte (configContent ), 0644 )) //#nosec G703 -- test code, path is constructed from temp dir
142142
143143 // Remove builder if it exists (stop first, then remove)
144144 _ = exec .Command ("docker" , "buildx" , "stop" , builderName ).Run ()
@@ -427,7 +427,7 @@ RUN echo "Built for nested path test"
427427CMD ["echo", "Hello from nested path"]` , baseImage )
428428
429429 dockerfilePath := filepath .Join (workspace , "Dockerfile" )
430- assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 ))
430+ assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 )) //#nosec G703 -- test code, path built from test workspace
431431
432432 // Cleanup old build
433433 inttestutils .DeleteBuild (serverDetails .ArtifactoryUrl , buildName , artHttpDetails )
@@ -515,7 +515,7 @@ RUN echo "This is the nested base image"
515515CMD ["echo", "base"]` , alpineBase )
516516
517517 baseDockerfilePath := filepath .Join (workspace , "Dockerfile.base" )
518- assert .NoError (t , os .WriteFile (baseDockerfilePath , []byte (baseDockerfile ), 0644 ))
518+ assert .NoError (t , os .WriteFile (baseDockerfilePath , []byte (baseDockerfile ), 0644 )) //#nosec G703 -- test code, path built from test workspace
519519
520520 // Push base image to nested path
521521 inttestutils .DeleteBuild (serverDetails .ArtifactoryUrl , baseImageBuildName , artHttpDetails )
@@ -538,7 +538,7 @@ RUN echo "This is the child image using nested base"
538538CMD ["echo", "child"]` , baseImageTag )
539539
540540 childDockerfilePath := filepath .Join (workspace , "Dockerfile.child" )
541- assert .NoError (t , os .WriteFile (childDockerfilePath , []byte (childDockerfile ), 0644 ))
541+ assert .NoError (t , os .WriteFile (childDockerfilePath , []byte (childDockerfile ), 0644 )) //#nosec G703 -- test code, path built from test workspace
542542
543543 // Build child image
544544 inttestutils .DeleteBuild (serverDetails .ArtifactoryUrl , childBuildName , artHttpDetails )
@@ -1092,7 +1092,7 @@ RUN echo "Hello from test"
10921092CMD ["sh"]` , baseImage )
10931093
10941094 dockerfilePath := filepath .Join (workspace , "Dockerfile" )
1095- assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 ))
1095+ assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 )) //#nosec G703 -- test code, path built from test workspace
10961096
10971097 // clean build before test
10981098 runJfrogCli (t , "rt" , "bc" , buildName , buildNumber )
@@ -1141,11 +1141,11 @@ RUN echo "Hello from test"
11411141CMD ["sh"]` , baseImage )
11421142
11431143 dockerfilePath := filepath .Join (workspace , "Dockerfile" )
1144- assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 ))
1144+ assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 )) //#nosec G703 -- test code, path built from test workspace
11451145
11461146 // Create test file
11471147 testFilePath := filepath .Join (workspace , "test.txt" )
1148- assert .NoError (t , os .WriteFile (testFilePath , []byte ("Hello from Docker build test" ), 0644 ))
1148+ assert .NoError (t , os .WriteFile (testFilePath , []byte ("Hello from Docker build test" ), 0644 )) //#nosec G703 -- test code
11491149
11501150 // clean build before test
11511151 runJfrogCli (t , "rt" , "bc" , buildName , buildNumber )
@@ -1199,7 +1199,7 @@ FROM %s
11991199CMD ["hello"]` , golangImage , alpineImage )
12001200
12011201 dockerfilePath := filepath .Join (workspace , "Dockerfile" )
1202- assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 ))
1202+ assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 )) //#nosec G703 -- test code, path built from test workspace
12031203
12041204 // clean build before test
12051205 runJfrogCli (t , "rt" , "bc" , buildName , buildNumber )
@@ -1251,7 +1251,7 @@ RUN echo "Built with buildx"
12511251CMD ["echo", "Hello from buildx"]` , baseImage )
12521252
12531253 dockerfilePath := filepath .Join (workspace , "Dockerfile" )
1254- assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 ))
1254+ assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 )) //#nosec G703 -- test code, path built from test workspace
12551255
12561256 // Check if buildx is available
12571257 cmd := exec .Command ("docker" , "buildx" , "version" )
@@ -1310,7 +1310,7 @@ RUN echo "Testing virtual repo"
13101310CMD ["sh"]` , baseImage )
13111311
13121312 dockerfilePath := filepath .Join (workspace , "Dockerfile" )
1313- assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 ))
1313+ assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 )) //#nosec G703 -- test code, path built from test workspace
13141314
13151315 // clean build before test
13161316 runJfrogCli (t , "rt" , "bc" , buildName , buildNumber )
@@ -1455,7 +1455,7 @@ func TestDockerBuildPublishWithCIVcsProps(t *testing.T) {
14551455CMD ["echo", "Hello from CI VCS test"]` , baseImage )
14561456
14571457 dockerfilePath := filepath .Join (workspace , "Dockerfile" )
1458- assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 ))
1458+ assert .NoError (t , os .WriteFile (dockerfilePath , []byte (dockerfileContent ), 0644 )) //#nosec G703 -- test code, path built from test workspace
14591459
14601460 // Clean build before test
14611461 runJfrogCli (t , "rt" , "bc" , buildName , buildNumber )
0 commit comments