Skip to content

Feat 001#2

Open
cx-jeff-clare wants to merge 2 commits intodahkath:masterfrom
cx-jeff-clare:FEAT-001
Open

Feat 001#2
cx-jeff-clare wants to merge 2 commits intodahkath:masterfrom
cx-jeff-clare:FEAT-001

Conversation

@cx-jeff-clare
Copy link

No description provided.

@dahkath
Copy link
Owner

dahkath commented Mar 9, 2026

Logo
Checkmarx One – Scan Summary & Details7631b40a-2096-44c1-bb51-6863a27ff080


New Issues (4) Checkmarx found the following issues in this Pull Request
# Severity Issue Source File / Package Checkmarx Insight
1 HIGH CVE-2026-26996 Npm-minimatch-3.0.8
detailsRecommended version: 3.1.4
Description: minimatch is a minimal matching utility for converting glob expressions into JavaScript RegExp objects. Versions prior to 3.1.3, 4.0.0 prior to 4.2...
Attack Vector: NETWORK
Attack Complexity: LOW
Vulnerable Package
2 HIGH CVE-2026-27903 Npm-minimatch-3.0.8
detailsRecommended version: 3.1.4
Description: minimatch is a minimal matching utility for converting glob expressions into JavaScript RegExp objects. All versions starting from 3.0.0 and prior ...
Attack Vector: NETWORK
Attack Complexity: LOW
Vulnerable Package
3 HIGH CVE-2026-27904 Npm-minimatch-3.0.8
detailsRecommended version: 3.1.4
Description: minimatch is a minimal matching utility for converting glob expressions into JavaScript RegExp objects. All versions starting from 3.0.0 and prior ...
Attack Vector: NETWORK
Attack Complexity: LOW
Vulnerable Package
4 MEDIUM CVE-2025-66614 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
detailsRecommended version: 9.0.113
Description: Improper Input Validation vulnerability. This issue affects Apache Tomcat: from 11.0.0-M1 through 11.0.14, 10.0.0-M1 through 10.1.49, and 8.5.0 th...
Attack Vector: NETWORK
Attack Complexity: LOW
Vulnerable Package

Fixed Issues (6) Great job! The following issues were fixed in this Pull Request
Severity Issue Source File / Package
HIGH TruffleHog_HighEntropy_Strings /Fake-Secrets-Test.txt: 13
HIGH TruffleHog_HighEntropy_Strings /Fake-Secrets-Test.txt: 2
HIGH TruffleHog_HighEntropy_Strings /Fake-Secrets-Test.txt: 3
HIGH TruffleHog_HighEntropy_Strings /Fake-Secrets-Test.txt: 4
HIGH TruffleHog_Regex_Matches /Fake-Secrets-Test.txt: 7
HIGH TruffleHog_Regex_Matches /Fake-Secrets-Test.txt: 10

Use @Checkmarx to interact with Checkmarx PR Assistant.
Examples:
@Checkmarx how are you able to help me?
@Checkmarx rescan this PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants