Repository navigation
Release 1.162.9 - #3864
Release 1.162.9#3864odlbot wants to merge 5 commits into
Conversation
… read (#3859) Co-authored-by: Claude Opus 5 (1M context) <noreply@anthropic.com>
Co-authored-by: pre-commit-ci[bot] <66853113+pre-commit-ci[bot]@users.noreply.github.com> Co-authored-by: Dan Subak <dsubak@users.noreply.github.com>
|
| GitGuardian id | GitGuardian status | Secret | Commit | Filename | |
|---|---|---|---|---|---|
| 36131093 | Triggered | Generic High Entropy Secret | 99171d2 | ecommerce/fixtures.py | View secret |
🛠 Guidelines to remediate hardcoded secrets
- Understand the implications of revoking this secret by investigating where it is used in your code.
- Replace and store your secret safely. Learn here the best practices.
- Revoke and rotate this secret.
- If possible, rewrite git history. Rewriting git history is not a trivial act. You might completely break other contributing developers' workflow and you risk accidentally deleting legitimate data.
To avoid such incidents in the future consider
- following these best practices for managing and storing secrets including API keys and other credentials
- install secret detection on pre-commit to catch secret before it leaves your machine and ease remediation.
🦉 GitGuardian detects secrets in your source code to help developers and security teams secure the modern development process. You are seeing this because you or someone else with access to this repository has authorized GitGuardian to scan your pull request.
OpenAPI ChangesShow/hide changesUnexpected changes? Ensure your branch is up-to-date with |
| pass | ||
|
|
||
|
|
||
| def check_and_process_pending_orders_for_resolution(refnos=None): | ||
| def _retrieve_pending_cybersource_orders(orders): |
There was a problem hiding this comment.
Bug: The Celery task process_pending_order_resolutions calls check_and_process_pending_orders_for_resolution without the required refnos argument, which will cause a TypeError.
Severity: CRITICAL
Suggested Fix
Update the process_pending_order_resolutions Celery task to correctly call check_and_process_pending_orders_for_resolution. Similar to the updated management command, this likely involves initializing an empty list for refnos and passing it to the function.
Prompt for AI Agent
Review the code at the location below. A potential bug has been identified by an AI
agent. Verify if this is a real issue. If it is, propose a fix; if not, explain why it's
not valid.
Location: ecommerce/api.py#L744-L747
Potential issue: The function signature for
`check_and_process_pending_orders_for_resolution` was changed, making the `refnos`
parameter a required positional argument. However, the Celery task
`process_pending_order_resolutions` in `ecommerce/tasks.py` was not updated and still
calls this function without any arguments. Because this is a scheduled Celery task, it
will run periodically in production and raise a `TypeError` on every execution, as it is
missing the required `refnos` argument.
Did we get this right? 👍 / 👎 to inform future reviews.
|
Closing to get a fix for a migration in place. This never deployed. |
James Kachel
cp-at-mit
Tobias Macey