Skip to content

Conversation

@cx-anurag-dalke
Copy link
Collaborator

No description provided.

@cx-ben-alvo
Copy link
Collaborator

cx-ben-alvo commented Dec 4, 2025

Logo
Checkmarx One – Scan Summary & Detailsf2a7ef7c-f684-463c-bc0d-9750c9347c9e

New Issues (2)

Checkmarx found the following issues in this Pull Request

Severity Issue Source File / Package Checkmarx Insight
MEDIUM CVE-2025-64718 Npm-js-yaml-3.14.1
detailsRecommended version: 3.14.2
Description: js-yaml is a JavaScript YAML parser and dumper. In js-yaml versions through 3.14.1 and 4.x through 4.1.0, it's possible for an attacker to modify t...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: %2FUlNAhP4Ve8L6xW%2BaV6%2FNoVLds7cj%2FJkwuF4a8QD694%3D
Vulnerable Package
MEDIUM CVE-2025-64718 Npm-js-yaml-4.1.0
detailsRecommended version: 4.1.1
Description: js-yaml is a JavaScript YAML parser and dumper. In js-yaml versions through 3.14.1 and 4.x through 4.1.0, it's possible for an attacker to modify t...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: uq9VySHWDWdVLtj5Fueb16Bhn6cKeiN%2Bh7OWYc3t0qk%3D
Vulnerable Package

Use @Checkmarx to reach out to us for assistance.

Just send a PR comment with @Checkmarx followed by a natural language request.

Examples: @Checkmarx how are you able to help me? @Checkmarx rescan this PR

cx-rahul-pidde
cx-rahul-pidde previously approved these changes Dec 4, 2025
@cx-anurag-dalke cx-anurag-dalke merged commit 71889a7 into main Dec 10, 2025
5 checks passed
@cx-anurag-dalke cx-anurag-dalke deleted the other/org_change branch December 10, 2025 06:13
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants