Skip to content

Conversation

@streude
Copy link
Contributor

@streude streude commented Oct 10, 2025

Added search panel/results and token example.

@service-coreservices
Copy link

service-coreservices commented Oct 10, 2025

Logo
Checkmarx One – Scan Summary & Details2667a5bc-24cc-44bc-954d-342b6cfab7f8

New Issues (3)

Checkmarx found the following issues in this Pull Request

Severity Issue Source File / Package Checkmarx Insight
HIGH Client_DOM_XSS /index.html: 121
detailsThe method makeAPIRequest embeds untrusted data in generated output with innerHTML, at line 187 of /index.html. This untrusted data is embedded i...
ID: Tnm0GcdhNRdAQEAMw3wMrMo%2FJ%2FY%3D
Attack Vector
HIGH Client_DOM_XSS /index.html: 121
detailsThe method makeAPIRequest embeds untrusted data in generated output with innerHTML, at line 159 of /index.html. This untrusted data is embedded i...
ID: f4nashfOEsQ4RKAIRPdvtqA28n8%3D
Attack Vector
MEDIUM Client_DOM_Open_Redirect /token.html: 702
detailsThe potentially tainted value provided by value in /token.html at line 702 is used as a destination URL by href in /token.html at line 732, poten...
ID: %2FpXQz8u%2FSL4djEeVbSe4vurl%2Bso%3D
Attack Vector

Use @Checkmarx to reach out to us for assistance.

Just send a PR comment with @Checkmarx followed by a natural language request.

Examples: @Checkmarx how are you able to help me? @Checkmarx rescan this PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants