Skip to content

Update application-9.0.yml#1

Open
kmcdon83 wants to merge 1 commit intodevelopfrom
kmcdon83-patch-1
Open

Update application-9.0.yml#1
kmcdon83 wants to merge 1 commit intodevelopfrom
kmcdon83-patch-1

Conversation

@kmcdon83
Copy link

By submitting a PR to this repository, you agree to the terms within the Checkmarx Code of Conduct. Please see the contributing guidelines for how to create and submit a high-quality PR for this repo.

Description

Describe the purpose of this PR along with any background information and the impacts of the proposed change.

References

Include supporting link to GitHub Issue/PR number

Testing

Describe how this change was tested. Be specific about anything not tested and reasons why. If this solution has unit and/or integration testing, tests should be added for new functionality and existing tests should complete without errors.

Please include any manual steps for testing end-to-end or functionality not covered by unit/integration tests.

Checklist

  • I have added documentation for new/changed functionality in this PR (if applicable). If documentation is a Wiki Update, please indicate desired changes within PR MD Comment
  • All active GitHub checks for tests, formatting, and security are passing
  • The correct base branch is being used

@kmcdon83
Copy link
Author

Logo
Checkmarx One – Scan Summary & Details8ddf2271-44c0-4b8a-933f-4088c0bddfe3

New Issues (14)

Checkmarx found the following issues in this Pull Request

Severity Issue Source File / Package Checkmarx Insight
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/GitHubController.java: 242
detailsMethod pushRequest at line 242 of /src/main/java/com/checkmarx/flow/controller/GitHubController.java gets user input from element body. This elemen...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/bitbucket/cloud/BitbucketCloudController.java: 169
detailsMethod pushRequest at line 169 of /src/main/java/com/checkmarx/flow/controller/bitbucket/cloud/BitbucketCloudController.java gets user input from e...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/bitbucket/cloud/BitbucketCloudController.java: 169
detailsMethod pushRequest at line 169 of /src/main/java/com/checkmarx/flow/controller/bitbucket/cloud/BitbucketCloudController.java gets user input from e...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/FlowController.java: 75
detailsMethod latestScanResults at line 75 of /src/main/java/com/checkmarx/flow/controller/FlowController.java gets user input from element status. This e...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/FlowController.java: 74
detailsMethod latestScanResults at line 74 of /src/main/java/com/checkmarx/flow/controller/FlowController.java gets user input from element category. This...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/FlowController.java: 73
detailsMethod latestScanResults at line 73 of /src/main/java/com/checkmarx/flow/controller/FlowController.java gets user input from element cwe. This elem...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/FlowController.java: 72
detailsMethod latestScanResults at line 72 of /src/main/java/com/checkmarx/flow/controller/FlowController.java gets user input from element severity. This...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/GitHubController.java: 242
detailsMethod pushRequest at line 242 of /src/main/java/com/checkmarx/flow/controller/GitHubController.java gets user input from element body. This elemen...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/GitHubController.java: 242
detailsMethod pushRequest at line 242 of /src/main/java/com/checkmarx/flow/controller/GitHubController.java gets user input from element body. This elemen...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/TfsController.java: 55
detailsMethod pullPushRequest at line 55 of /src/main/java/com/checkmarx/flow/controller/TfsController.java gets user input from element body. This elemen...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/GitHubController.java: 100
detailsMethod pullRequest at line 100 of /src/main/java/com/checkmarx/flow/controller/GitHubController.java gets user input from element body. This elemen...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/GitHubController.java: 100
detailsMethod pullRequest at line 100 of /src/main/java/com/checkmarx/flow/controller/GitHubController.java gets user input from element body. This elemen...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/GitHubController.java: 100
detailsMethod pullRequest at line 100 of /src/main/java/com/checkmarx/flow/controller/GitHubController.java gets user input from element body. This elemen...
Attack Vector
LOW Log_Forging /src/main/java/com/checkmarx/flow/controller/TfsController.java: 55
detailsMethod pullPushRequest at line 55 of /src/main/java/com/checkmarx/flow/controller/TfsController.java gets user input from element body. This elemen...
Attack Vector
Fixed Issues (9)

Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
LOW Client_Hardcoded_Domain /src/main/resources/templates/index.html: 13
LOW Client_Hardcoded_Domain /src/main/resources/templates/index.html: 12
LOW Client_Hardcoded_Domain /src/main/resources/templates/index.html: 11
LOW Client_Hardcoded_Domain /src/main/resources/templates/index.html: 16
LOW Client_Hardcoded_Domain /src/main/resources/templates/index.html: 17
LOW Client_Hardcoded_Domain /src/main/resources/templates/index.html: 18
LOW Heap_Inspection /src/main/java/com/checkmarx/flow/config/ServiceNowProperties.java: 18
LOW Heap_Inspection /src/main/java/com/checkmarx/flow/config/FlowProperties.java: 328
LOW Heap_Inspection /src/test/resources/cucumber/data/input-code-samples/DOS_Login.java: 87

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant