Skip to content

Conversation

@aalsanie
Copy link

Signed-off-by: Ahmad <ahmad.alsanie@hotmail.com>
Signed-off-by: aalsanie <ahmad.alsanie@hotmail.com>
…hotmail.com

Signed-off-by: aalsanie <ahmad.alsanie@hotmail.com>
@psiinon
Copy link
Member

psiinon commented Jan 26, 2026

Logo
Checkmarx One – Scan Summary & Detailsd2c17ea2-4a41-49f1-b177-53f40bf3616e

New Issues (1)

Checkmarx found the following issues in this Pull Request

# Severity Issue Source File / Package Checkmarx Insight
1 HIGH Improper_Restriction_of_Stored_XXE_Ref /subprojects/zap-clientapi/src/main/java/org/zaproxy/clientapi/core/ClientApiMain.java: 214
detailsThe loads and parses XML using parse, at line 213 of /subprojects/zap-clientapi/src/main/java/org/zaproxy/clientapi/core/AlertsFile.java. This...
Attack Vector
Fixed Issues (2)

Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
HIGH CVE-2021-33813 Maven-org.jdom:jdom-1.1.3
HIGH Improper_Restriction_of_Stored_XXE_Ref /subprojects/zap-clientapi/src/main/java/org/zaproxy/clientapi/core/ClientApiMain.java: 214

Use @Checkmarx to interact with Checkmarx PR Assistant.
Examples:
@Checkmarx how are you able to help me?
@Checkmarx rescan this PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Development

Successfully merging this pull request may close these issues.

2 participants