Skip to content

Conversation

@or-checkmarx
Copy link
Contributor

No description provided.

@cxsca-bot
Copy link

cxsca-bot bot commented May 27, 2021

Scan submitted to Checkmarx

@CheckmarxDev CheckmarxDev deleted a comment from cxsca-bot bot May 27, 2021
@or-checkmarx or-checkmarx reopened this May 27, 2021
@or-checkmarx or-checkmarx reopened this May 27, 2021
@or-checkmarx or-checkmarx reopened this May 27, 2021
@CheckmarxDev CheckmarxDev deleted a comment from cxsca-bot bot May 28, 2021
@cxsca-bot
Copy link

cxsca-bot bot commented May 28, 2021

Logo
Checkmarx SCA - Scan Summary & Details

Cx-SCA Summary

Total Packages Identified: 23
Scan Risk Score: 9.80

High 26 High severity vulnerabilities
Medium 11 Medium severity vulnerabilities
Low 2 Low severity vulnerabilities
View more details on Checkmarx UI

Cx-SCA vulnerability result overview

Vulnerability ID Package Severity CVSS score Publish date Current version Recommended version Link in CxSCA Reference – NVD link
CVE-2015-7501 commons-collections:commons-collections HIGH 9.8 2017-11-09T17:29:00 3.2.1 Vulnerability Link CVE-2015-7501
CVE-2020-10683 dom4j:dom4j HIGH 9.8 2020-05-01T19:15:00 1.6.1 Vulnerability Link CVE-2020-10683
CVE-2019-3888 io.undertow:undertow-core HIGH 9.8 2019-06-12T14:29:00 2.0.9.Final Vulnerability Link CVE-2019-3888
CVE-2019-10212 io.undertow:undertow-core HIGH 9.8 2019-10-02T19:15:00 2.0.9.Final Vulnerability Link CVE-2019-10212
CVE-2020-1938 org.apache.tomcat:tomcat-coyote HIGH 9.8 2020-02-24T22:15:00 9.0.22 Vulnerability Link CVE-2020-1938
CVE-2015-2575 mysql:mysql-connector-java HIGH 9.1 2014-12-06T00:00:00 5.1.27 Vulnerability Link CVE-2015-2575
CVE-2018-3258 mysql:mysql-connector-java HIGH 8.8 2018-10-17T01:31:00 5.1.27 Vulnerability Link CVE-2018-3258
CVE-2017-3523 mysql:mysql-connector-java HIGH 8.5 2017-04-24T19:59:00 5.1.27 Vulnerability Link CVE-2017-3523
CVE-2020-1757 io.undertow:undertow-core HIGH 8.1 2020-04-21T17:15:00 2.0.9.Final Vulnerability Link CVE-2020-1757
Cx78f40514-81ff commons-collections:commons-collections HIGH 7.5 2018-10-31T10:39:00 3.2.1 Vulnerability Link N\A
CVE-2015-6420 commons-collections:commons-collections HIGH 7.5 2015-12-15T05:59:00 3.2.1 Vulnerability Link CVE-2015-6420
CVE-2018-1000632 dom4j:dom4j HIGH 7.5 2018-08-20T19:31:00 1.6.1 Vulnerability Link CVE-2018-1000632
CVE-2020-27782 io.undertow:undertow-core HIGH 7.5 2021-02-23T19:15:00 2.0.9.Final Vulnerability Link CVE-2020-27782
CVE-2020-1745 io.undertow:undertow-core HIGH 7.5 2020-04-28T15:15:00 2.0.9.Final Vulnerability Link CVE-2020-1745
CVE-2020-10705 io.undertow:undertow-core HIGH 7.5 2020-06-10T20:15:00 2.0.9.Final Vulnerability Link CVE-2020-10705
Cx7ef609d2-efb5 mysql:mysql-connector-java HIGH 7.5 2010-08-01T23:00:00 5.1.27 Vulnerability Link N\A
Cx6f651376-312a mysql:mysql-connector-java HIGH 7.5 2017-08-14T23:00:00 5.1.27 Vulnerability Link N\A
Cx039cb67c-ead3 mysql:mysql-connector-java HIGH 7.5 2015-08-16T23:00:00 5.1.27 Vulnerability Link N\A
CVE-2020-11996 org.apache.tomcat:tomcat-coyote HIGH 7.5 2020-06-26T17:15:00 9.0.22 Vulnerability Link CVE-2020-11996
CVE-2021-25122 org.apache.tomcat:tomcat-coyote HIGH 7.5 2021-03-01T12:15:00 9.0.22 Vulnerability Link CVE-2021-25122
CVE-2020-17527 org.apache.tomcat:tomcat-coyote HIGH 7.5 2020-12-03T19:15:00 9.0.22 Vulnerability Link CVE-2020-17527
CVE-2020-13934 org.apache.tomcat:tomcat-coyote HIGH 7.5 2020-07-14T15:15:00 9.0.22 Vulnerability Link CVE-2020-13934
Cxdb5a1032-eda2 org.json:json HIGH 7.5 2019-09-17T10:37:00 20131018 Vulnerability Link N\A
Cx2906ba70-607a org.json:json HIGH 7.5 2017-08-18T09:31:00 20131018 Vulnerability Link N\A
Cx08fcacc9-cb99 org.json:json HIGH 7.5 2017-10-30T11:27:00 20131018 Vulnerability Link N\A
CVE-2020-25638 org.hibernate:hibernate-core HIGH 7.4 2020-09-22T16:32:00 4.0.1.Final Vulnerability Link CVE-2020-25638

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant