update advanced-sast language support

This commit is contained in:
Duncan Macleod 2024-09-25 15:26:33 +02:00
parent f9711e760b
commit ef68374448
No known key found for this signature in database

View file

@ -66,6 +66,7 @@ gitlab-advanced-sast:
- '**/*.py' - '**/*.py'
- '**/*.go' - '**/*.go'
- '**/*.java' - '**/*.java'
- '**/*.jsp'
- '**/*.js' - '**/*.js'
- '**/*.jsx' - '**/*.jsx'
- '**/*.ts' - '**/*.ts'
@ -73,6 +74,7 @@ gitlab-advanced-sast:
- '**/*.cjs' - '**/*.cjs'
- '**/*.mjs' - '**/*.mjs'
- '**/*.cs' - '**/*.cs'
- '**/*.rb'
brakeman-sast: brakeman-sast:
extends: .deprecated-16.8 extends: .deprecated-16.8
@ -136,7 +138,7 @@ semgrep-sast:
"$[[ inputs.excluded_analyzers ]]" !~ /gitlab-advanced-sast/ && "$[[ inputs.excluded_analyzers ]]" !~ /gitlab-advanced-sast/ &&
"$[[ inputs.run_advanced_sast ]]" == "true"' "$[[ inputs.run_advanced_sast ]]" == "true"'
variables: variables:
SAST_EXCLUDED_PATHS: "$DEFAULT_SAST_EXCLUDED_PATHS, **/*.py, **/*.go, **/*.java, **/*.js, **/*.jsx, **/*.ts, **/*.tsx, **/*.cjs, **/*.mjs, **/*.cs" SAST_EXCLUDED_PATHS: "$DEFAULT_SAST_EXCLUDED_PATHS, **/*.py, **/*.go, **/*.java, **/*.js, **/*.jsx, **/*.ts, **/*.tsx, **/*.cjs, **/*.mjs, **/*.cs, **/*.rb"
exists: exists:
- '**/*.c' - '**/*.c'
- '**/*.cc' - '**/*.cc'
@ -151,7 +153,6 @@ semgrep-sast:
- '**/*.php' - '**/*.php'
- '**/*.swift' - '**/*.swift'
- '**/*.m' - '**/*.m'
- '**/*.rb'
- '**/*.kt' - '**/*.kt'
## In case gitlab-advanced-sast already covers all the files that semgrep-sast would have scanned ## In case gitlab-advanced-sast already covers all the files that semgrep-sast would have scanned
- if: '$CI_COMMIT_BRANCH && - if: '$CI_COMMIT_BRANCH &&