Skip to content

Conversation

@cx-anurag-dalke
Copy link
Collaborator

Updates checkmarx-ast-cli to 2.3.41

Auto-generated by [create-pull-request][2]

@cx-ben-alvo
Copy link
Collaborator

Logo
Checkmarx One – Scan Summary & Detailsfe45a1a8-9b74-4aff-bf2b-bdf1a2a132ec

New Issues (2)

Checkmarx found the following issues in this Pull Request

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2025-65945 Npm-jws-4.0.0
detailsRecommended version: 4.0.1
Description: auth0/node-jws is a JSON Web Signature implementation for Node.js. In versions prior to 3.2.2 and version 4.0.0, auth0/node-jws has an improper sig...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: OvPyGFK9G197mmhURRMY%2FPyzk%2F91ZLDKW09YGDHo9TM%3D
Vulnerable Package
HIGH CVE-2025-65945 Npm-jws-3.2.2
detailsRecommended version: 3.2.3
Description: auth0/node-jws is a JSON Web Signature implementation for Node.js. In versions prior to 3.2.2 and version 4.0.0, auth0/node-jws has an improper sig...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: WK8AHJ49YILpekx%2FwCnrr1SK%2FnGf7OAN26LwXusYCr0%3D
Vulnerable Package

Use @Checkmarx to reach out to us for assistance.

Just send a PR comment with @Checkmarx followed by a natural language request.

Examples: @Checkmarx how are you able to help me? @Checkmarx rescan this PR

@cx-plugins-releases cx-plugins-releases merged commit d2c074a into main Dec 15, 2025
5 checks passed
@cx-plugins-releases cx-plugins-releases deleted the feature/update_cli_2.3.41 branch December 15, 2025 10:04
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants