Checkmarx / ast-jetbrains-plugin

The CxAST JetBrains plugin enables you to import results from a CxAST scan directly into your IDE.
https://plugins.jetbrains.com/plugin/17672-checkmarx-ast
Apache License 2.0
2 stars 3 forks source link

change the name of plugin #258

Closed sarahCx closed 3 months ago

sarahCx commented 3 months ago

By submitting a PR to this repository, you agree to the terms within the Checkmarx Code of Conduct. Please see the contributing guidelines for how to create and submit a high-quality PR for this repo.

Description

Rename the plugin to "Checkmarx One" to distinguish it from the SAST plugin

References

https://checkmarx.atlassian.net/browse/AST-34937

Testing

Do not need

Checklist

github-actions[bot] commented 3 months ago

Logo Checkmarx One – Scan Summary & Details54311255-fe16-43d3-806f-1266870da707

Policy Management Violations

Policy Name Rule(s) Break Build
[SAST-ML0] Not allowed NEW Sast vulnerabilities true

New Issues

Severity Issue Source File / Package Checkmarx Insight
MEDIUM Unpinned Actions Full Length Commit SHA /test-ui-windows.yml: 33 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /checkmarx-one-scan.yml: 19 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /dependabot-auto-merge.yml: 23 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /release.yml: 136 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /delete-dev-releases.yml: 28 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /pr-label.yml: 15 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /test-ui-ubuntu.yml: 33 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /dependabot-auto-merge.yml: 14 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /test-ui-mac.yml: 34 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...
MEDIUM Unpinned Actions Full Length Commit SHA /ci.yml: 38 Pinning an action to a full length commit SHA is currently the only way to use an action as an immutable release. Pinning to a particular SHA helps...

Fixed Issues

Severity Issue Source File / Package
HIGH CVE-2019-17571 Gradle-log4j:log4j-1.2.17
HIGH CVE-2021-4104 Gradle-log4j:log4j-1.2.17
HIGH CVE-2022-23302 Gradle-log4j:log4j-1.2.17
HIGH CVE-2022-23305 Gradle-log4j:log4j-1.2.17
HIGH CVE-2022-23307 Gradle-log4j:log4j-1.2.17
MEDIUM CVE-2020-15250 Gradle-junit:junit-4.10
MEDIUM CVE-2020-15250 Gradle-junit:junit-4.12
LOW Use_of_Broken_or_Risky_Cryptographic_Algorithm /src/main/java/com/checkmarx/intellij/Utils.java: 42
LOW Use_of_Broken_or_Risky_Cryptographic_Algorithm /src/main/java/com/checkmarx/intellij/Utils.java: 42
LOW Use_of_Broken_or_Risky_Cryptographic_Algorithm /src/main/java/com/checkmarx/intellij/Utils.java: 42
LOW Use_of_Broken_or_Risky_Cryptographic_Algorithm /src/main/java/com/checkmarx/intellij/Utils.java: 42
sarahCx commented 3 months ago

merge to main

sarahCx commented 3 months ago

merge to main