Checkmarx / ast-jetbrains-plugin

The CxAST JetBrains plugin enables you to import results from a CxAST scan directly into your IDE.
https://plugins.jetbrains.com/plugin/17672-checkmarx-ast
Apache License 2.0
2 stars 3 forks source link

plugin reports differently when same project is scanned within intellij-ue as opposed to intellij-ce #116

Closed jwtodd closed 2 years ago

jwtodd commented 2 years ago

[see: checker:forum ]

hi -

the intellij package checker plugin is quite nice. it works really well in intellij-ue (ultimate edition) but we are not seeing it report the same vulnerabilities in the same java/gradle project when running in intellij-ce (community edition).

i’ve looked through the checkmarx intellij plugin documentation and have yet to find an answer. the docs are quite nice btw.

to summarize, should the checkmarx package-checker intellij plugin work the same in intellij-ce as it does in intellij-ue?

latests: intellij-ue, intellij-ce, package-checker plugin toolchain: jdk:17, gradle:7.5, intellij

thoughts?

thx,

pedrompflopes commented 2 years ago

@jwtodd Thanks for raising this, but the plugin we have in this repo is this one:

https://plugins.jetbrains.com/plugin/17672-checkmarx-ast

Thanks.

jwtodd commented 2 years ago

@pedrompflopes yeah that's the one we installed. no where other then here could i find a means to register the issue.

as such, what do you suggest as the solution?