CxJasonT / CxFlowBodgeit

CxOne PR and CxFlow webhook
0 stars 0 forks source link

Update README.md #25

Open CxJasonT opened 2 years ago

CxJasonT commented 2 years ago

Logo Checkmarx AST – Scan Summary & Details4ef92837-4d0f-4b06-aa07-87fad5c4091d

New Issues

Severity Issue File / Package Scan Engine
HIGH CVE-2016-10707 Npm-jquery-1.6.4 CxSCA
HIGH Client_DOM_XSS /root/advanced.jsp: 48 CxSAST
HIGH Missing User Instruction /Dockerfile: 6 CxKICS
HIGH Reflected_XSS_All_Clients /root/basket.jsp: 38 CxSAST
HIGH Reflected_XSS_All_Clients /root/search.jsp: 10 CxSAST
HIGH Reflected_XSS_All_Clients /root/contact.jsp: 11 CxSAST
HIGH Reflected_XSS_All_Clients /root/login.jsp: 7, 35 CxSAST
HIGH Reflected_XSS_All_Clients /root/register.jsp: 6, 46 CxSAST
HIGH SQL_Injection /root/password.jsp: 10 CxSAST
HIGH SQL_Injection /root/basket.jsp: 38, 43, 148, 212 CxSAST
HIGH SQL_Injection /root/register.jsp: 6, 7, 46, 51 CxSAST
HIGH SQL_Injection /root/login.jsp: 7, 8, 35, 40 CxSAST
HIGH Second_Order_SQL_Injection /root/login.jsp: 15 CxSAST
HIGH Stored_XSS /src/com/thebodgeitstore/search/AdvancedSearch.java: 186 CxSAST
HIGH Stored_XSS /root/search.jsp: 34 CxSAST
HIGH Stored_XSS /root/score.jsp: 14 CxSAST
HIGH Stored_XSS /root/login.jsp: 15 CxSAST
HIGH Stored_XSS /root/product.jsp: 42, 59 CxSAST
HIGH Stored_XSS /root/home.jsp: 25 CxSAST
HIGH Stored_XSS /root/admin.jsp: 16 CxSAST
HIGH Stored_XSS /root/contact.jsp: 63 CxSAST
HIGH Stored_XSS /root/basket.jsp: 242 CxSAST
MEDIUM CSRF /root/basket.jsp: 38, 43, 148, 160, 212 CxSAST
MEDIUM CSRF /root/register.jsp: 6, 7, 46, 51 CxSAST
MEDIUM CSRF /root/login.jsp: 7, 8, 35, 40 CxSAST
MEDIUM CSRF /root/password.jsp: 10 CxSAST
MEDIUM CSRF /root/contact.jsp: 11 CxSAST
MEDIUM CVE-2007-2379 Npm-jquery-1.6.4 CxSCA
MEDIUM CVE-2012-6708 Npm-jquery-1.6.4 CxSCA
MEDIUM CVE-2014-6071 Npm-jquery-1.6.4 CxSCA
MEDIUM CVE-2015-9251 Npm-jquery-1.6.4 CxSCA
MEDIUM CVE-2019-11358 Npm-jquery-1.6.4 CxSCA
MEDIUM CVE-2020-11022 Npm-jquery-1.6.4 CxSCA
MEDIUM CVE-2020-11023 Npm-jquery-1.6.4 CxSCA
MEDIUM CVE-2020-1945 Maven-org.apache.ant:ant-1.8.4 CxSCA
MEDIUM CVE-2020-7656 Npm-jquery-1.6.4 CxSCA
MEDIUM CVE-2021-36373 Maven-org.apache.ant:ant-1.8.4 CxSCA
MEDIUM CVE-2021-36374 Maven-org.apache.ant:ant-1.8.4 CxSCA
MEDIUM Client_Potential_XSS /root/js/advanced.js: 40 CxSAST
MEDIUM Cxf0b588a3-5c6f Npm-jquery-1.6.4 CxSCA
MEDIUM Missing_HSTS_Header /root/about.jsp: 1 CxSAST
MEDIUM Session_Fixation /src/com/thebodgeitstore/search/AdvancedSearch.java: 48 CxSAST
MEDIUM Session_Fixation /root/register.jsp: 34, 35, 36 CxSAST
MEDIUM Session_Fixation /root/login.jsp: 22, 23, 24 CxSAST
MEDIUM Session_Fixation /root/logout.jsp: 3, 4, 5 CxSAST
LOW Client_DOM_Open_Redirect /root/advanced.jsp: 48 CxSAST
LOW Client_JQuery_Deprecated_Symbols /root/js/advanced.js: 28 CxSAST
LOW Healthcheck Instruction Missing /Dockerfile: 6 CxKICS
LOW Heap_Inspection /root/password.jsp: 10, 11 CxSAST
LOW Heap_Inspection /root/init.jsp: 5, 8 CxSAST
LOW Heap_Inspection /src/com/thebodgeitstore/util/AES.java: 103 CxSAST
LOW Heap_Inspection /root/register.jsp: 7, 8 CxSAST
LOW Heap_Inspection /root/login.jsp: 8 CxSAST
LOW MAINTAINER Instruction Being Used /Dockerfile: 7 CxKICS
LOW Trust_Boundary_Violation_in_Session_Variables /root/register.jsp: 6 CxSAST
LOW Trust_Boundary_Violation_in_Session_Variables /root/login.jsp: 7, 8 CxSAST