Skip to content

Conversation

RobertMickleCx
Copy link
Owner

Lab 4

@github-actions
Copy link

github-actions bot commented Sep 8, 2021

Scan submitted to Checkmarx

@github-actions
Copy link

github-actions bot commented Sep 8, 2021

Logo
Checkmarx SCA - Scan Summary & Details

Cx-SCA Summary

Total Packages Identified: 23
Scan Risk Score: 9.80

High 25 High severity vulnerabilities
Medium 12 Medium severity vulnerabilities
Low 2 Low severity vulnerabilities
View more details on Checkmarx UI

Cx-SCA vulnerability result overview

Vulnerability ID Package Severity CVSS score Publish date Current version Recommended version Link in CxSCA Reference – NVD link
Cx6a5f7948-7054 commons-collections:commons-collections HIGH 9.8 2015-11-06T22:00:00 3.2.1 Vulnerability Link N\A
CVE-2020-10683 dom4j:dom4j HIGH 9.8 2020-05-01T19:15:00 1.6.1 Vulnerability Link CVE-2020-10683
CVE-2019-10212 io.undertow:undertow-core HIGH 9.8 2019-10-02T19:15:00 2.0.9.Final Vulnerability Link CVE-2019-10212
CVE-2019-3888 io.undertow:undertow-core HIGH 9.8 2019-06-12T14:29:00 2.0.9.Final Vulnerability Link CVE-2019-3888
CVE-2020-1938 org.apache.tomcat:tomcat-coyote HIGH 9.8 2020-02-24T22:15:00 9.0.22 Vulnerability Link CVE-2020-1938
CVE-2015-2575 mysql:mysql-connector-java HIGH 9.1 2014-12-06T00:00:00 5.1.26 Vulnerability Link CVE-2015-2575
CVE-2018-3258 mysql:mysql-connector-java HIGH 8.8 2018-10-17T01:31:00 5.1.26 Vulnerability Link CVE-2018-3258
CVE-2017-3523 mysql:mysql-connector-java HIGH 8.5 2017-04-24T19:59:00 5.1.26 Vulnerability Link CVE-2017-3523
CVE-2020-1757 io.undertow:undertow-core HIGH 8.1 2020-04-21T17:15:00 2.0.9.Final Vulnerability Link CVE-2020-1757
Cx78f40514-81ff commons-collections:commons-collections HIGH 7.5 2018-10-31T10:39:00 3.2.1 Vulnerability Link N\A
CVE-2018-1000632 dom4j:dom4j HIGH 7.5 2018-08-20T19:31:00 1.6.1 Vulnerability Link CVE-2018-1000632
CVE-2020-1745 io.undertow:undertow-core HIGH 7.5 2020-04-28T15:15:00 2.0.9.Final Vulnerability Link CVE-2020-1745
CVE-2020-10705 io.undertow:undertow-core HIGH 7.5 2020-06-10T20:15:00 2.0.9.Final Vulnerability Link CVE-2020-10705
CVE-2020-27782 io.undertow:undertow-core HIGH 7.5 2021-02-23T19:15:00 2.0.9.Final Vulnerability Link CVE-2020-27782
Cx7ef609d2-efb5 mysql:mysql-connector-java HIGH 7.5 2010-08-01T23:00:00 5.1.26 Vulnerability Link N\A
Cx6f651376-312a mysql:mysql-connector-java HIGH 7.5 2017-08-14T23:00:00 5.1.26 Vulnerability Link N\A
Cx039cb67c-ead3 mysql:mysql-connector-java HIGH 7.5 2015-08-16T23:00:00 5.1.26 Vulnerability Link N\A
CVE-2020-17527 org.apache.tomcat:tomcat-coyote HIGH 7.5 2020-12-03T19:15:00 9.0.22 Vulnerability Link CVE-2020-17527
CVE-2020-11996 org.apache.tomcat:tomcat-coyote HIGH 7.5 2020-06-26T17:15:00 9.0.22 Vulnerability Link CVE-2020-11996
CVE-2020-13934 org.apache.tomcat:tomcat-coyote HIGH 7.5 2020-07-14T15:15:00 9.0.22 Vulnerability Link CVE-2020-13934
CVE-2021-25122 org.apache.tomcat:tomcat-coyote HIGH 7.5 2021-03-01T12:15:00 9.0.22 Vulnerability Link CVE-2021-25122
Cx08fcacc9-cb99 org.json:json HIGH 7.5 2017-10-30T11:27:00 20131018 Vulnerability Link N\A
Cx2906ba70-607a org.json:json HIGH 7.5 2017-08-18T09:31:00 20131018 Vulnerability Link N\A
Cxdb5a1032-eda2 org.json:json HIGH 7.5 2019-09-17T10:37:00 20131018 Vulnerability Link N\A
CVE-2020-25638 org.hibernate:hibernate-core HIGH 7.4 2020-09-22T16:32:00 4.0.1.Final Vulnerability Link CVE-2020-25638
CVE-2020-10719 io.undertow:undertow-core MEDIUM 6.5 2020-05-26T16:15:00 2.0.9.Final Vulnerability Link CVE-2020-10719
CVE-2020-10687 io.undertow:undertow-core MEDIUM 6.5 2020-09-23T13:15:00 2.0.9.Final Vulnerability Link CVE-2020-10687
CVE-2019-14900 org.hibernate:hibernate-core MEDIUM 6.5 2019-01-15T00:00:00 4.0.1.Final Vulnerability Link CVE-2019-14900
CVE-2017-3586 mysql:mysql-connector-java MEDIUM 6.4 2017-04-24T19:59:00 5.1.26 Vulnerability Link CVE-2017-3586
CVE-2019-2692 mysql:mysql-connector-java MEDIUM 6.3 2019-04-23T19:32:00 5.1.26 Vulnerability Link CVE-2019-2692
CVE-2020-14340 org.jboss.xnio:xnio-nio MEDIUM 5.9 2020-07-24T09:52:00 3.3.8.Final Vulnerability Link CVE-2020-14340
CVE-2021-33037 org.apache.tomcat:tomcat-coyote MEDIUM 5.3 2021-07-12T15:15:00 9.0.22 Vulnerability Link CVE-2021-33037
CVE-2020-2934 mysql:mysql-connector-java MEDIUM 5.0 2020-04-15T14:15:00 5.1.26 Vulnerability Link CVE-2020-2934
CVE-2019-17569 org.apache.tomcat:tomcat-coyote MEDIUM 4.8 2020-02-24T22:15:00 9.0.22 Vulnerability Link CVE-2019-17569
CVE-2020-1935 org.apache.tomcat:tomcat-coyote MEDIUM 4.8 2020-02-24T22:15:00 9.0.22 Vulnerability Link CVE-2020-1935
CVE-2020-2875 mysql:mysql-connector-java MEDIUM 4.7 2020-04-15T14:15:00 5.1.26 Vulnerability Link CVE-2020-2875
CVE-2020-13943 org.apache.tomcat:tomcat-coyote MEDIUM 4.3 2020-10-12T14:15:00 9.0.22 Vulnerability Link CVE-2020-13943
CVE-2017-3589 mysql:mysql-connector-java LOW 3.3 2017-04-24T19:59:00 5.1.26 Vulnerability Link CVE-2017-3589
CVE-2020-2933 mysql:mysql-connector-java LOW 2.2 2020-04-15T14:15:00 5.1.26 Vulnerability Link CVE-2020-2933

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

Successfully merging this pull request may close these issues.

1 participant