Skip to content

Conversation

@Batu676767
Copy link

This error appeared in playwright, probably imports werent included in tmp folder?

testing works, building works.

FAIL tests/int/llmjobs.int.spec.ts [ tests/int/llmjobs.int.spec.ts ]
Error: Cannot find module '/Users/batuhanaydemir/Desktop/code/github/lily-refactor-english-blank/node_modules/.pnpm/@shefing+authorization@1.0.10/node_modules/@shefing/authorization/dist/access/isAdmin' imported from /Users/batuhanaydemir/Desktop/code/github/lily-refactor-english-blank/node_modules/.pnpm/@shefing+authorization@1.0.10/node_modules/@shefing/authorization/dist/index.js

@philjoseph
Copy link
Member

philjoseph commented Sep 14, 2025

Logo
Checkmarx One – Scan Summary & Details0385e9c4-7137-4eee-98aa-36ebd495c645

New Issues (10)

Checkmarx found the following issues in this Pull Request

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2025-57822 Npm-next-15.0.4
detailsRecommended version: 15.4.2-canary.43
Description: Next.js is a React framework for building full-stack web applications. In versions through 14.2.31, 14.3.0-canary.0 through 15.4.2-canary.42 and 15...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: SJSWTddJkOhheTowKfmTm5DWleIe%2B2IFAjQnYaFdSSE%3D
Vulnerable Package
HIGH CVE-2025-57822 Npm-next-15.3.3
detailsRecommended version: 15.4.2-canary.43
Description: Next.js is a React framework for building full-stack web applications. In versions through 14.2.31, 14.3.0-canary.0 through 15.4.2-canary.42 and 15...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: tUjrXtU817J7Mht0OMn3tKtd6cqvz2F3iS%2B4Po4VIVI%3D
Vulnerable Package
MEDIUM CVE-2025-4643 Npm-payload-3.0.2
detailsRecommended version: 3.44.0
Description: Payload uses JSON Web Tokens (JWT) for authentication. After logging out, JWT is not invalidated, which allows an attacker who has stolen or interc...
Attack Vector: NETWORK
Attack Complexity: HIGH

ID: PxgpSp9De5%2F%2FBEZCDjCe4g2XO91IiMSdYn9P2eXJMBQ%3D
Vulnerable Package
MEDIUM CVE-2025-4643 Npm-payload-3.35.1
detailsRecommended version: 3.44.0
Description: Payload uses JSON Web Tokens (JWT) for authentication. After logging out, JWT is not invalidated, which allows an attacker who has stolen or interc...
Attack Vector: NETWORK
Attack Complexity: HIGH

ID: vUoFwQRoE7DtoAMY2aU791qzARMgB3fINJdTXhjtU%2Fw%3D
Vulnerable Package
MEDIUM CVE-2025-4644 Npm-payload-3.35.1
detailsRecommended version: 3.44.0
Description: A Session Fixation vulnerability existed in Payload's SQLite adapter due to identifier reuse during account creation. A malicious attacker could cr...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: H55EN1TfqcxYF7Ekuz1ShEX8ta2k8bCKdpyQN3bNxkc%3D
Vulnerable Package
MEDIUM CVE-2025-4644 Npm-payload-3.0.2
detailsRecommended version: 3.44.0
Description: A Session Fixation vulnerability existed in Payload's SQLite adapter due to identifier reuse during account creation. A malicious attacker could cr...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: Hicu7h64FiY4%2FZyN031brfjBGWTqxpU9qaG1014gdxQ%3D
Vulnerable Package
MEDIUM CVE-2025-57752 Npm-next-15.0.4
detailsRecommended version: 15.4.2-canary.43
Description: Next.js is a React framework for building full-stack web applications. In versions 0.9.9 through 14.2.30, 14.3.0-canary.0 through 15.4.2-canary.18,...
Attack Vector: LOCAL
Attack Complexity: LOW

ID: %2FcxaGWtB8nZP06%2BJ8mUHlL4GZoZerWc8aPM8DrGPIK0%3D
Vulnerable Package
MEDIUM CVE-2025-57752 Npm-next-15.3.3
detailsRecommended version: 15.4.2-canary.43
Description: Next.js is a React framework for building full-stack web applications. In versions 0.9.9 through 14.2.30, 14.3.0-canary.0 through 15.4.2-canary.18,...
Attack Vector: LOCAL
Attack Complexity: LOW

ID: zIv5hMiOaLs88dmh4WJX0w3qcGc30JWR8HohLg6dhFw%3D
Vulnerable Package
LOW CVE-2025-55173 Npm-next-15.3.3
detailsRecommended version: 15.4.2-canary.43
Description: Next.js is a React framework for building full-stack web applications. In versions through 14.2.30, 15.0.0-rc.0 through 15.4.2-canary.18, 15.4.3 an...
Attack Vector: ADJACENT NETWORK
Attack Complexity: LOW

ID: 441%2BpyrTgjmueEc4eFIc3Q3PZTlAjPidPVC3gfNUWh8%3D
Vulnerable Package
LOW CVE-2025-55173 Npm-next-15.0.4
detailsRecommended version: 15.4.2-canary.43
Description: Next.js is a React framework for building full-stack web applications. In versions through 14.2.30, 15.0.0-rc.0 through 15.4.2-canary.18, 15.4.3 an...
Attack Vector: ADJACENT NETWORK
Attack Complexity: LOW

ID: 7FCt%2FNfj6jV5493VKNtYSjHZckUXlzN4w%2BVloiPpNRg%3D
Vulnerable Package
Fixed Issues (1)

Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
HIGH CVE-2025-45767 Npm-jose-5.9.6

Use @Checkmarx to reach out to us for assistance.

Just send a PR comment with @Checkmarx followed by a natural language request.

Examples: @Checkmarx how are you able to help me? @Checkmarx rescan this PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants