checkmarx Questions
2
Solved
I have integrated SonarQube and Checkmarx SAST and SCA into the Azure DevOps build pipeline. I am able to see both the SonarQube and Checkmarx reports without any issues.
I have the following...
Dustindustman asked 20/5, 2022 at 6:15
2
Solved
after running Checkmarx scan on my Node.js application, I got a warning of Medium severity -> Missing_HSTS_Header. On this piece of code that just returns the content of metadata.json file (high...
Fugitive asked 18/11, 2020 at 12:28
6
Solved
I keep getting this annoying error from Checkmarx code scanner,
Method getTotalValue at line 220 of src\java\com\example\PeopleController.java
gets user input for the personName element. This ele...
Fouts asked 1/1, 2019 at 8:12
2
CheckMarx is flagging an error which looks like a false positive to me. Our application is written in C# and uses ASP.NET Core.
The error is:
The web application's Startup method creates a cookie ...
Trochal asked 5/11, 2020 at 17:4
6
Checkmarx - v 9.3.0 HF11
I am passing env value as data directory path in docker file which used in dev/uat server
ENV DATA /app/data/
In local, using following Environment variable
DATA=C:\projec...
Kurtiskurtosis asked 2/12, 2020 at 11:10
0
I am using Spring MVC and I have an End Point having HTTP Method Post.
@ResponseBody
public ResponseEntity<Object> request(@RequestBody @Valid RequestPayload requestBody){
//Code
}
public ...
Sclera asked 9/6, 2020 at 18:37
4
Solved
I have run my java app against the checkmarx tool for security vulnerability and it is constantly giving an issue - Heap Inspection, for my password field for which I use a character array. It does...
Apiary asked 20/5, 2015 at 5:54
2
Solved
Can anyone suggest the proper sanitization/validation process required for the courseType variable in the following getCourses method. I am using that variable to write in a log file.
I've tried H...
Lytton asked 26/3, 2019 at 19:5
2
Solved
I have an endpoint that receives a String from the client as seen below:
@GET
@Path("/{x}")
public Response doSomething(@PathParam("x") String x) {
String y = myService.process(x);
return Respo...
Grekin asked 13/8, 2015 at 9:54
1
Codebase I am working on has been analyzed by Checkmarx, and it came back with a report containing a "Stored XSS" issue. The issue states:
Method GetHomepageFilterByLocale HomepageRepo.cs gets da...
2
On scanning code using checkmarx for security vulnerabilities, a privacy violation issue was reported pointing to a variable name.
public const string Authentication = "authentication";
I am usi...
1
© 2022 - 2024 — McMap. All rights reserved.