Skip to content

Code Security Report: 1 findings [main] #5

@mend-developer-platform-dev

Description

@mend-developer-platform-dev

Code Security Report

Scan Metadata

Latest Scan: 2025-09-17 07:59AM
Total Findings: 1 | New Findings: 0 | Resolved Findings: 0
Tested Project Files: 2
Detected Programming Languages: 1 (Java*)

Most Relevant Findings

The list below presents the 1 most relevant finding that need your attention.

Severity
Vulnerability Type
CWE
File
Data Flows
Detected
Low
Log Forging
1
2025-09-17 07:59AM
Vulnerable Code

private static final Logger logger = LogManager.getLogger("HelloWorld");
@GetMapping("/")
public String index(@RequestHeader("X-Api-Version") String apiVersion) {
logger.info("Received a request for API version " + apiVersion);
return "Hello, world!";
}
}

Data Flows (1 detected)

public String index(@RequestHeader("X-Api-Version") String apiVersion) {

logger.info("Received a request for API version " + apiVersion);

public String index(@RequestHeader("X-Api-Version") String apiVersion) {

logger.info("Received a request for API version " + apiVersion);

Secure Code Warrior Training Material

Findings Overview

Severity Vulnerability Type CWE Language Count
Low Log Forging CWE-117 Java* 1

Metadata

Metadata

Assignees

No one assigned

    Labels

    No labels
    No labels

    Type

    No type

    Projects

    No projects

    Milestone

    No milestone

    Relationships

    None yet

    Development

    No branches or pull requests

    Issue actions