Skip to content

docs(migration): sdk migration demo#123

Open
AkankshaAcharya wants to merge 1 commit intomasterfrom
docs/migration/video
Open

docs(migration): sdk migration demo#123
AkankshaAcharya wants to merge 1 commit intomasterfrom
docs/migration/video

Conversation

@AkankshaAcharya
Copy link
Contributor

No description provided.

@RicoFactset
Copy link

Logo
Checkmarx One – Scan Summary & Details54de3c62-e249-478c-ad0f-2a6b4ddd7ee1


New Issues (7) Checkmarx found the following issues in this Pull Request
# Severity Issue Source File / Package Checkmarx Insight
1 HIGH CVE-2026-0994 Python-protobuf-3.17.2
detailsRecommended version: 5.29.6
Description: A Denial-of-Service (DoS) vulnerability exists in "google.protobuf.json_format.ParseDict()" in Python, where the "max_recursion_depth" limit can be...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: 5%2BJm09YJigDRCSyiObc2qpYuG3hXpHPOJbEN235%2B30k%3D
Vulnerable Package
2 HIGH CVE-2026-0994 Python-protobuf-3.17.3
detailsRecommended version: 5.29.6
Description: A Denial-of-Service (DoS) vulnerability exists in "google.protobuf.json_format.ParseDict()" in Python, where the "max_recursion_depth" limit can be...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: JygjC%2Ff1E7XTrSLWhA%2BNh1Ze3ClZiMzR4sOFrXmfUUM%3D
Vulnerable Package
3 HIGH CVE-2026-21441 Python-urllib3-1.26.6
detailsRecommended version: 2.6.3
Description: urllib3 is an HTTP client library for Python. urllib3's streaming API is designed for the efficient handling of large HTTP responses by reading the...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: 1PIYnmTEHCShhwC41uZqE8TiK%2BPfWgPiI8xBRQvvtWw%3D
Vulnerable Package
4 HIGH CVE-2026-21441 Python-urllib3-1.26.5
detailsRecommended version: 2.6.3
Description: urllib3 is an HTTP client library for Python. urllib3's streaming API is designed for the efficient handling of large HTTP responses by reading the...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: kaV9iEulpxZMMj2dOTqXTmknhzVo2a98LpvynSbINGQ%3D
Vulnerable Package
5 MEDIUM Communication_Over_HTTP /auto-generated-sdk/fds/analyticsapi/engines/configuration.py: 324
detailsThe application's debug method, in /auto-generated-sdk/fds/analyticsapi/engines/configuration.py at line 324, sends an HTTP request to the serve...
ID: CEfZaQvosuB3%2Fi25psxEuGJ51hw%3D
Attack Vector
6 MEDIUM Communication_Over_HTTP /auto-generated-sdk/fds/analyticsapi/engines/configuration.py: 317
detailsThe application's debug method, in /auto-generated-sdk/fds/analyticsapi/engines/configuration.py at line 317, sends an HTTP request to the serve...
ID: f%2B%2BDh3DB1tg%2BcgOiOGatkbmDDEY%3D
Attack Vector
7 LOW Improper_Resource_Shutdown_or_Release /auto-generated-sdk/fds/analyticsapi/engines/model_utils.py: 1241
detailsA possible Denial of Service was found in line 1242 in /auto-generated-sdk/fds/analyticsapi/engines/model_utils.py file. Not closing connectio...
ID: RyEd6jJbdJiOmdMDylyT3c9U03I%3D
Attack Vector

Communicate with Checkmarx by submitting a PR comment with @Checkmarx followed by one of the supported commands. Learn about the supported commands here.

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

5 participants