Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Add files via upload #5

Open
wants to merge 1 commit into
base: master
Choose a base branch
from
Open

Add files via upload #5

wants to merge 1 commit into from

Conversation

Abdul1110
Copy link
Owner

No description provided.

@Abdul1110
Copy link
Owner Author

Logo
Checkmarx AST – Scan Summary & Details2f1327d8-f3c9-41ca-9b7f-7c0c9a44c029

CxAST Violation Summary

HIGH58 HIGH
MEDIUM45 MEDIUM
LOW4 LOW

CxAST Results

Severity Issue File / Package Scan Engine
HIGH CVE-2017-11556 Npm-node-sass-4.13.0 CxSCA
HIGH CVE-2017-12963 Npm-node-sass-4.13.0 CxSCA
HIGH CVE-2017-12964 Npm-node-sass-4.13.0 CxSCA
HIGH CVE-2018-11499 Npm-node-sass-4.13.0 CxSCA
HIGH CVE-2018-11693 Npm-node-sass-4.13.0 CxSCA
HIGH CVE-2018-11694 Npm-node-sass-4.13.0 CxSCA
HIGH CVE-2018-11696 Npm-node-sass-4.13.0 CxSCA
HIGH CVE-2018-11697 Npm-node-sass-4.13.0 CxSCA
HIGH CVE-2018-19827 Npm-node-sass-4.13.0 CxSCA
HIGH CVE-2019-10744 Npm-lodash-4.17.11 CxSCA
HIGH CVE-2019-15599 Npm-tree-kill-1.2.1 CxSCA
HIGH CVE-2020-28477 Npm-immer-5.1.0 CxSCA
HIGH CVE-2020-36048 Npm-engine.io-3.5.0 CxSCA
HIGH CVE-2020-7660 Npm-serialize-javascript-1.9.1 CxSCA
HIGH CVE-2020-7746 Npm-chart.js-2.8.0 CxSCA
HIGH CVE-2020-7753 Npm-trim-0.0.1 CxSCA
HIGH CVE-2020-7788 Npm-ini-1.3.5 CxSCA
HIGH CVE-2020-8203 Npm-lodash-4.17.11 CxSCA
HIGH CVE-2020-8203 Npm-lodash-4.17.15 CxSCA
HIGH CVE-2021-23337 Npm-lodash-4.17.11 CxSCA
HIGH CVE-2021-23337 Npm-lodash-4.17.15 CxSCA
HIGH CVE-2021-23406 Npm-degenerator-2.2.0 CxSCA
HIGH CVE-2021-23424 Npm-ansi-html-0.0.7 CxSCA
HIGH CVE-2021-23440 Npm-set-value-2.0.1 CxSCA
HIGH CVE-2021-27515 Npm-url-parse-1.4.7 CxSCA
HIGH CVE-2021-32803 Npm-tar-2.2.2 CxSCA
HIGH CVE-2021-32804 Npm-tar-2.2.2 CxSCA
HIGH CVE-2021-33623 Npm-trim-newlines-1.0.0 CxSCA
HIGH CVE-2021-3749 Npm-axios-0.19.0 CxSCA
HIGH CVE-2021-3757 Npm-immer-5.1.0 CxSCA
HIGH CVE-2021-37701 Npm-tar-2.2.2 CxSCA
HIGH CVE-2021-37712 Npm-tar-2.2.2 CxSCA
HIGH CVE-2021-37713 Npm-tar-2.2.2 CxSCA
HIGH CVE-2021-3795 Npm-semver-regex-2.0.0 CxSCA
HIGH CVE-2021-3803 Npm-nth-check-1.0.2 CxSCA
HIGH CVE-2021-3807 Npm-ansi-regex-3.0.0 CxSCA
HIGH CVE-2021-3807 Npm-ansi-regex-2.1.1 CxSCA
HIGH CVE-2021-3807 Npm-ansi-regex-4.1.0 CxSCA
HIGH Cx0b414307-5d4b Npm-lodash-4.17.11 CxSCA
HIGH Cx0b414307-5d4b Npm-lodash-4.17.15 CxSCA
HIGH Cx347a3da7-ba99 Npm-node-forge-0.10.0 CxSCA
HIGH Cx6f6f1276-7a2e Npm-tar-2.2.2 CxSCA
HIGH Cx89601373-08db Npm-debug-3.1.0 CxSCA
HIGH Cx89601373-08db Npm-debug-3.2.7 CxSCA
HIGH Cx89601373-08db Npm-debug-4.1.1 CxSCA
HIGH Cx89601373-08db Npm-debug-2.6.9 CxSCA
HIGH Cx8bc4df28-fcf5 Npm-debug-3.1.0 CxSCA
HIGH Cx8bc4df28-fcf5 Npm-debug-4.3.2 CxSCA
HIGH Cx8bc4df28-fcf5 Npm-debug-3.2.7 CxSCA
HIGH Cx8bc4df28-fcf5 Npm-debug-4.1.1 CxSCA
HIGH Cx8bc4df28-fcf5 Npm-debug-2.6.9 CxSCA
HIGH Cxcc0ac612-9ed7 Npm-swagger-ui-dist-3.52.5 CxSCA
HIGH Cxdca8e59f-8bfe Npm-inflight-1.0.6 CxSCA
HIGH Cxf6e7f2c1-dc59 Npm-yauzl-2.10.0 CxSCA
HIGH Missing User Instruction /Dockerfile: 1, 22 CxKICS
HIGH Passwords And Secrets - Generic Password /application.yml: 30 CxKICS
HIGH Passwords And Secrets - Generic Secret /application.yml: 31 CxKICS
HIGH Passwords And Secrets - Generic Token /application.yml: 43, 44 CxKICS
MEDIUM CVE-2007-2379 Npm-jquery-3.6.0 CxSCA
MEDIUM CVE-2014-6071 Npm-jquery-3.6.0 CxSCA
MEDIUM CVE-2017-11605 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2017-11608 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2018-19797 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2018-20190 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2018-20821 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2019-16769 Npm-serialize-javascript-1.9.1 CxSCA
MEDIUM CVE-2019-18797 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2019-18798 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2019-18799 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2019-20174 Npm-auth0-lock-11.20.2 CxSCA
MEDIUM CVE-2019-6283 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2019-6284 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2019-6286 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2020-15119 Npm-auth0-lock-11.20.2 CxSCA
MEDIUM CVE-2020-15168 Npm-node-fetch-1.7.3 CxSCA
MEDIUM CVE-2020-15366 Npm-ajv-6.10.2 CxSCA
MEDIUM CVE-2020-15366 Npm-ajv-6.10.0 CxSCA
MEDIUM CVE-2020-15366 Npm-ajv-5.5.2 CxSCA
MEDIUM CVE-2020-24025 Npm-node-sass-4.13.0 CxSCA
MEDIUM CVE-2020-28168 Npm-axios-0.19.0 CxSCA
MEDIUM CVE-2020-28469 Npm-glob-parent-3.1.0 CxSCA
MEDIUM CVE-2020-28481 Npm-socket.io-2.4.0 CxSCA
MEDIUM CVE-2020-28500 Npm-lodash-4.17.11 CxSCA
MEDIUM CVE-2020-28500 Npm-lodash-4.17.15 CxSCA
MEDIUM CVE-2020-7608 Npm-yargs-parser-11.1.1 CxSCA
MEDIUM CVE-2020-7693 Npm-sockjs-0.3.19 CxSCA
MEDIUM CVE-2021-23364 Npm-browserslist-4.6.3 CxSCA
MEDIUM CVE-2021-23368 Npm-postcss-7.0.17 CxSCA
MEDIUM CVE-2021-23382 Npm-postcss-7.0.17 CxSCA
MEDIUM CVE-2021-23436 Npm-immer-5.1.0 CxSCA
MEDIUM CVE-2021-3163 Npm-quill-1.3.7 CxSCA
MEDIUM CVE-2021-32641 Npm-auth0-lock-11.20.2 CxSCA
MEDIUM CVE-2021-3664 Npm-url-parse-1.4.7 CxSCA
MEDIUM CVE-2022-0122 Npm-node-forge-0.10.0 CxSCA
MEDIUM CVE-2022-0155 Npm-follow-redirects-1.5.10 CxSCA
MEDIUM CVE-2022-0235 Npm-node-fetch-1.7.3 CxSCA
MEDIUM CVE-2022-0536 Npm-follow-redirects-1.5.10 CxSCA
MEDIUM Cx14b19a02-387a Npm-body-parser-1.19.0 CxSCA
MEDIUM Cx65603961-769c Npm-debug-2.6.9 CxSCA
MEDIUM Cx65603961-769c Npm-debug-3.1.0 CxSCA
MEDIUM Cx65603961-769c Npm-debug-4.1.1 CxSCA
MEDIUM Cxbd6f2b91-dd38 Npm-debug-4.1.1 CxSCA
MEDIUM Unpinned Package Version in Apk Add /Dockerfile: 13, 30 CxKICS
LOW CVE-2020-15262 Npm-webpack-subresource-integrity-1.1.0-rc.6 CxSCA
LOW Cxda14f253-4e52 Npm-bluebird-3.7.2 CxSCA
LOW Healthcheck Instruction Missing /Dockerfile: 1, 22 CxKICS
LOW Multiple RUN, ADD, COPY, Instructions Listed /Dockerfile: 17, 36 CxKICS

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant