Skip to content

Comments

Story #15289: POC#3523

Draft
marob wants to merge 3 commits intodevelopfrom
poc-15289
Draft

Story #15289: POC#3523
marob wants to merge 3 commits intodevelopfrom
poc-15289

Conversation

@marob
Copy link
Contributor

@marob marob commented Jan 29, 2026

No description provided.

@marob marob added this to the IT 165 milestone Jan 29, 2026
@vitam-prg
Copy link
Collaborator

vitam-prg commented Jan 29, 2026

Logo
Checkmarx One – Scan Summary & Details12754945-2590-43de-8452-7824a82bdf1f

New Issues (5)

Checkmarx found the following issues in this Pull Request

# Severity Issue Source File / Package Checkmarx Insight
1 MEDIUM Parameter_Tampering /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java: 55
detailsMethod unresolveDiscussion at line 55 of /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java gets...
Attack Vector
2 MEDIUM Parameter_Tampering /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java: 45
detailsMethod addMessage at line 45 of /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java gets user inp...
Attack Vector
3 MEDIUM Parameter_Tampering /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java: 50
detailsMethod resolveDiscussion at line 50 of /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java gets u...
Attack Vector
4 MEDIUM Parameter_Tampering /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java: 45
detailsMethod addMessage at line 45 of /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java gets user inp...
Attack Vector
5 MEDIUM Parameter_Tampering /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java: 40
detailsMethod createDiscussion at line 40 of /api/api-iam/iam/src/main/java/fr/gouv/vitamui/iam/server/discussion/rest/DiscussionController.java gets us...
Attack Vector
Fixed Issues (3)

Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
HIGH CVE-2026-25639 Npm-axios-1.13.4
LOW CVE-2025-68157 Npm-webpack-5.98.0
LOW CVE-2025-68458 Npm-webpack-5.98.0

Use @Checkmarx to interact with Checkmarx PR Assistant.
Examples:
@Checkmarx how are you able to help me?
@Checkmarx rescan this PR

@marob marob force-pushed the poc-15289 branch 2 times, most recently from 03b769f to 9dd46e9 Compare February 2, 2026 16:40
@marob marob force-pushed the poc-15289 branch 3 times, most recently from e1024f0 to c2cfa17 Compare February 18, 2026 18:56
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants