Skip to content

story #15307: add license and linter#107

Open
Regzox wants to merge 6 commits intomasterfrom
story_15307
Open

story #15307: add license and linter#107
Regzox wants to merge 6 commits intomasterfrom
story_15307

Conversation

@Regzox
Copy link
Contributor

@Regzox Regzox commented Feb 6, 2026

No description provided.

@Regzox Regzox self-assigned this Feb 6, 2026
@Regzox Regzox added the enhancement New feature or request label Feb 6, 2026
@Regzox Regzox changed the title story #15307: add license and liner story #15307: add license and linter Feb 6, 2026
@vitam-prg
Copy link

vitam-prg commented Feb 6, 2026

Logo
Checkmarx One – Scan Summary & Detailsd343617d-57da-47fb-afad-7eb962c176aa

New Issues (29)

Checkmarx found the following issues in this Pull Request

# Severity Issue Source File / Package Checkmarx Insight
1 HIGH Improper_Restriction_of_Stored_XXE_Ref /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/inout/importer/SIPToArchiveTransferImporter.java: 239
detailsThe SEDAXMLEventReader loads and parses XML using createXMLEventReader, at line 200 of /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/xml/SEDAX...
Attack Vector
2 HIGH Improper_Restriction_of_Stored_XXE_Ref /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/inout/importer/DIPToArchiveDeliveryRequestReplyImporter.java: 243
detailsThe SEDAXMLEventReader loads and parses XML using createXMLEventReader, at line 200 of /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/xml/SEDAX...
Attack Vector
3 HIGH Improper_Restriction_of_Stored_XXE_Ref /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/inout/importer/SIPToArchiveTransferImporter.java: 239
detailsThe SEDAXMLEventReader loads and parses XML using createXMLEventReader, at line 199 of /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/xml/SEDAX...
Attack Vector
4 HIGH Improper_Restriction_of_Stored_XXE_Ref /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/inout/importer/DIPToArchiveDeliveryRequestReplyImporter.java: 243
detailsThe SEDAXMLEventReader loads and parses XML using createXMLEventReader, at line 199 of /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/xml/SEDAX...
Attack Vector
5 HIGH Improper_Restriction_of_XXE_Ref /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 469
detailsThe indentString loads and parses XML using parse, at line 172 of /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/xml/IndentXMLTool.java. Thi...
Attack Vector
6 HIGH Improper_Restriction_of_XXE_Ref /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 501
detailsThe indentString loads and parses XML using parse, at line 172 of /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/xml/IndentXMLTool.java. Thi...
Attack Vector
7 HIGH Improper_Restriction_of_XXE_Ref /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 528
detailsThe indentString loads and parses XML using parse, at line 172 of /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/xml/IndentXMLTool.java. Thi...
Attack Vector
8 MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 319
detailsMethod main at line 319 of /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java sends user information outside the appli...
Attack Vector
9 MEDIUM Privacy_Violation /javalibpst/src/main/java/fr/gouv/vitam/tools/javalibpst/PSTRecipient.java: 94
detailsMethod getSmtpAddress at line 94 of /javalibpst/src/main/java/fr/gouv/vitam/tools/javalibpst/PSTRecipient.java sends user information outside the ...
Attack Vector
10 MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 526
detailsMethod main at line 526 of /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java sends user information outside the appli...
Attack Vector
11 MEDIUM Privacy_Violation /mailextractlib/src/main/java/fr/gouv/vitam/tools/mailextractlib/store/microsoft/pst/PstStoreMessage.java: 296
detailsMethod getNativeRecipientsEmailAddress at line 296 of /mailextractlib/src/main/java/fr/gouv/vitam/tools/mailextractlib/store/microsoft/pst/PstStore...
Attack Vector
12 MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractGraphicApp.java: 364
detailsMethod parseParams at line 364 of /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractGraphicApp.java sends user information out...
Attack Vector
13 MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractGraphicApp.java: 364
detailsMethod parseParams at line 364 of /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractGraphicApp.java sends user information out...
Attack Vector
14 MEDIUM Privacy_Violation /mailextractlib/src/main/java/fr/gouv/vitam/tools/mailextractlib/store/microsoft/MicrosoftStoreMessage.java: 358
detailsMethod analyzeFrom at line 358 of /mailextractlib/src/main/java/fr/gouv/vitam/tools/mailextractlib/store/microsoft/MicrosoftStoreMessage.java send...
Attack Vector
15 MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 319
detailsMethod main at line 319 of /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java sends user information outside the appli...
Attack Vector
16 MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 319
detailsMethod main at line 319 of /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java sends user information outside the appli...
Attack Vector
17 MEDIUM Privacy_Violation /mailextractlib/src/main/java/fr/gouv/vitam/tools/mailextractlib/core/StoreExtractor.java: 780
detailsMethod writeTargetLog at line 780 of /mailextractlib/src/main/java/fr/gouv/vitam/tools/mailextractlib/core/StoreExtractor.java sends user informat...
Attack Vector
18 MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 319
detailsMethod main at line 319 of /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java sends user information outside the appli...
Attack Vector
19 MEDIUM Privacy_Violation /javalibpst/src/main/java/fr/gouv/vitam/tools/javalibpst/PSTContact.java: 1221
detailsMethod toString at line 1221 of /javalibpst/src/main/java/fr/gouv/vitam/tools/javalibpst/PSTContact.java sends user information outside the applic...
Attack Vector
20 MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 528
detailsMethod buttonCanonizeXmlEdit at line 528 of /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java obtains user input from getTex...
Attack Vector
21 MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 469
detailsMethod buttonClean at line 469 of /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java obtains user input from getText - the r...
Attack Vector
22 MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 501
detailsMethod buttonSaveXmlEdit at line 501 of /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java obtains user input from getText -...
Attack Vector
23 MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 501
detailsMethod buttonSaveXmlEdit at line 501 of /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java obtains user input from getText -...
Attack Vector
24 MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 501
detailsMethod buttonSaveXmlEdit at line 501 of /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java obtains user input from getText -...
Attack Vector
25 MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 528
detailsMethod buttonCanonizeXmlEdit at line 528 of /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java obtains user input from getTex...
Attack Vector
26 MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 528
detailsMethod buttonCanonizeXmlEdit at line 528 of /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java obtains user input from getTex...
Attack Vector
27 MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/sedaobjecteditor/AnyXMLTypeEditor.java: 184
detailsMethod editButton at line 184 of /resip/src/main/java/fr/gouv/vitam/tools/resip/sedaobjecteditor/AnyXMLTypeEditor.java obtains user input from get...
Attack Vector
28 MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 469
detailsMethod buttonClean at line 469 of /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java obtains user input from getText - the r...
Attack Vector
29 LOW Heap_Inspection /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 134
detailsMethod createOptions at line 134 of /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java defines password, which is desi...
Attack Vector
Fixed Issues (29)

Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
HIGH Improper_Restriction_of_Stored_XXE_Ref /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/inout/importer/SIPToArchiveTransferImporter.java: 203
HIGH Improper_Restriction_of_Stored_XXE_Ref /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/inout/importer/DIPToArchiveDeliveryRequestReplyImporter.java: 206
HIGH Improper_Restriction_of_Stored_XXE_Ref /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/inout/importer/SIPToArchiveTransferImporter.java: 203
HIGH Improper_Restriction_of_Stored_XXE_Ref /sedalib/src/main/java/fr/gouv/vitam/tools/sedalib/inout/importer/DIPToArchiveDeliveryRequestReplyImporter.java: 206
HIGH Improper_Restriction_of_XXE_Ref /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 490
HIGH Improper_Restriction_of_XXE_Ref /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 433
HIGH Improper_Restriction_of_XXE_Ref /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 463
MEDIUM Privacy_Violation /javalibpst/src/main/java/fr/gouv/vitam/tools/javalibpst/PSTContact.java: 1145
MEDIUM Privacy_Violation /mailextractlib/src/main/java/fr/gouv/vitam/tools/mailextractlib/store/microsoft/MicrosoftStoreMessage.java: 361
MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 266
MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 266
MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 266
MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 266
MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractGraphicApp.java: 343
MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 459
MEDIUM Privacy_Violation /mailextractlib/src/main/java/fr/gouv/vitam/tools/mailextractlib/store/microsoft/pst/PstStoreMessage.java: 297
MEDIUM Privacy_Violation /javalibpst/src/main/java/fr/gouv/vitam/tools/javalibpst/PSTRecipient.java: 89
MEDIUM Privacy_Violation /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractGraphicApp.java: 343
MEDIUM Privacy_Violation /mailextractlib/src/main/java/fr/gouv/vitam/tools/mailextractlib/core/StoreExtractor.java: 717
MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 433
MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 463
MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 463
MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 463
MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 490
MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 490
MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 490
MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/frame/XmlEditDialog.java: 433
MEDIUM Unchecked_Input_for_Loop_Condition /resip/src/main/java/fr/gouv/vitam/tools/resip/sedaobjecteditor/AnyXMLTypeEditor.java: 171
LOW Heap_Inspection /mailextract/src/main/java/fr/gouv/vitam/tools/mailextract/MailExtractApp.java: 115

Use @Checkmarx to interact with Checkmarx PR Assistant.
Examples:
@Checkmarx how are you able to help me?
@Checkmarx rescan this PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

enhancement New feature or request

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants