Skip to content

Bump org.apache.tomcat:tomcat-coyote from 9.0.22 to 9.0.108#107

Open
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/maven/org.apache.tomcat-tomcat-coyote-9.0.108
Open

Bump org.apache.tomcat:tomcat-coyote from 9.0.22 to 9.0.108#107
dependabot[bot] wants to merge 1 commit intomasterfrom
dependabot/maven/org.apache.tomcat-tomcat-coyote-9.0.108

Conversation

@dependabot
Copy link
Copy Markdown

@dependabot dependabot bot commented on behalf of github Nov 12, 2025

Bumps org.apache.tomcat:tomcat-coyote from 9.0.22 to 9.0.108.

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps org.apache.tomcat:tomcat-coyote from 9.0.22 to 9.0.108.

---
updated-dependencies:
- dependency-name: org.apache.tomcat:tomcat-coyote
  dependency-version: 9.0.108
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <[email protected]>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file java Pull requests that update java code labels Nov 12, 2025
@juegge
Copy link
Copy Markdown
Contributor

juegge commented Nov 12, 2025

Logo
Checkmarx One – Scan Summary & Details7e79a003-fbc3-47a5-affa-efb84b92f9c8

New Issues (61)

Checkmarx found the following issues in this Pull Request

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2019-14888 Maven-io.undertow:undertow-core-2.0.9.Final
detailsRecommended version: 2.2.38.Final
Description: A vulnerability was found in the Undertow HTTP server in versions through 2.0.28.SP1-redhat-00001, version 2.0.28.Final-redhat-00001, and version 2...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: c53XDcyXN0Lc%2FdDL2Rl7wyLSnNMkgWMlgI8Sash78KI%3D
Vulnerable Package
HIGH CVE-2025-9784 Maven-io.undertow:undertow-core-2.0.9.Final
detailsRecommended version: 2.2.38.Final
Description: A flaw was found in Undertow where malformed client requests can trigger server-side stream resets without triggering abuse counters. This issue, r...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: 5iL4KYHhw%2B0w9mk%2FsIN4BL2BpHrFTq7AvHx933wCObc%3D
Vulnerable Package
HIGH Remote Desktop Port Open To Internet /AJP_Open_Port.tf: 6
detailsThe Remote Desktop port is open to the internet in a Security Group
ID: n184d2i0e3AlwvbL%2FJBiRl9dy8w%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: OuV1uNkwJurDpbYae7ld2SHPj%2BY%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 4hn2t8Pkae3OpZNm7CQ%2Fyr6y5wo%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: cCF%2BttQ6mvoNLCEEL30H0wUzyWo%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: ReatByiMlBBN%2FRB7SJibAZ4%2FHVQ%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 9xpyyKkXXB%2FrZjfqdnbkSC3FECU%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: XKHvGYlUie1KOLRkbhAPbx3RYQE%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: hkR%2BDU3C%2FfmgoJtUPRNP45HgA5k%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: OoFQ%2FJheoT2e8ILiEpHuoqggoJM%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: Ml3z%2FsF5q3c2neurJEgtCi%2BJ2Fs%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: VLCBYTBXGh04DCN8NyKsPyI7skE%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 2vnxR%2B6jBBEsaUSpED6znAvCNsU%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: zuFnUa91eanZsIyydkvgtAHWL5I%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 0xHCc%2FlMirk%2B27gimL1k5RqU5pE%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 7rnBvlakHbl6xJShMnz%2Br7n803E%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: bGJpV6Wb%2BTVWqqCRwiBoesm46Hg%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: VEfFRpRMjj%2FsEt5Cr8AvCrg%2BKgQ%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: FTamKnTqBlQ30pRaFB0SfKPVZxc%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: jjrdipl8x2qejIcEqs84XWw7uDg%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: ci%2FrmVz87oBdbVoBWnx%2B0odzhXY%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 9Tw3S2US2VIYaL8UuaKMS%2BcvM%2FY%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: KVvlYBJ79MzapIUbLBPFfONDV%2Bs%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: J2LXKQcLMuER0gg1yfDs3D7UXnI%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 8sjFNQHwpPdSyZrOKlINCwIPy7c%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 8OxgpW8oGXG%2FU3KFYb1sdWtoHhI%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: CznX86T%2BSOFnBx%2BxPqAH2ogFbdg%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: idBPp7JFC90S8MpnJPd89G5EZn8%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: UR7uKd5rxUUhYsIJw1f8Gce%2FyHc%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: snfE0BtC0HONM9I%2FeFWWA3nisWs%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: %2Fvg8OaLX1HpYHNefS1ttUzc64mM%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 4jvbRU%2B72arEhXpjysba1yuwPlE%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: rp%2BMtYbW9pkxDZa130o3pnSTLQM%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: EjIoP0v538k%2FaZVHooXZdn2ep%2FY%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: RJTMJZflR3g%2BN5dl0QPDbWo2HD8%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: SiAXHgRFmSnJM2NsYYpHUsdSjQ0%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: Igu3R7B7s49NoGrMOK2diIGlfmQ%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: iXa0eR39ts06knLRgTcr4EI8I64%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: RW%2BvMIohdId6RkgndlmPNV60AhU%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: JWq4Lixv30GsuJeJ4mY0f1FUE2c%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: lo%2FvWvaQG3GF7wr7e%2F8MOejGUfo%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: V58KhwRv3TmRIN4OFsvWQvkwPtQ%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: n4%2BpBjOefWE8ZBzL4%2BdidF%2FdFog%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 2Zx3v1MgE2E6flIPX9aDpcmFAUo%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: Ho1WKMVs%2FpEMty%2Bi5j17qjsA9JU%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: dCGzrXvWHUL7Q%2BwP3wg0Sb0mufw%3D
HIGH Unknown Port Exposed To Internet /AJP_Open_Port.tf: 6
detailsAWS Security Group should not have an unknown port exposed to the entire Internet
ID: 9QBYw83goqJ9FNoz%2FtuSFg9uWyk%3D
HIGH Unrestricted Security Group Ingress /AJP_Open_Port.tf: 11
detailsSecurity groups allow ingress from 0.0.0.0:0 and/or ::/0
ID: tnUQtBqKQd3Dhbcn73FlAoNETco%3D
MEDIUM ELBv2 LB Access Log Disabled /infrostructure.tf: 3
detailsELBv2 LBs should have access log enabled to capture detailed information about requests sent to your load balancer.
ID: ATLpu3HKcTF0wxtbrMLsM7PWgsE%3D
MEDIUM HTTP Port Open To Internet /AJP_Open_Port.tf: 6
detailsThe HTTP port is open to the internet in a Security Group
ID: JcqtLegvYMi7izvMhDt4bjVprnE%3D
MEDIUM Parameter_Tampering /src/main/webapp/vulnerability/Injection/orm.jsp: 50
detailsMethod orm at line 50 of /src/main/webapp/vulnerability/Injection/orm.jsp gets user input from element ""id"". This input is later concatenated b...
ID: uvMzA73OHQXOrDzE0GZJ1WsHu8Y%3D
Attack Vector
MEDIUM SQL Analysis Services Port 2383 (TCP) Is Publicly Accessible /AJP_Open_Port.tf: 6
detailsCheck if port 2383 on TCP is publicly accessible by checking the CIDR block range that can access it.
ID: K75jRH6kh9Jqn3zlVWY8b55y72o%3D
MEDIUM Security Group With Unrestricted Access To SSH /AJP_Open_Port.tf: 6
details'SSH' (TCP:22) should not be public in AWS Security Group
ID: xCAFPTB%2Fj%2Fdm71bPUcBz66F8AVQ%3D
LOW AWS EIP not attached to any instance /infrostructure.tf: 51
detailsUnattached EIPs from EC2 instances should be disabled to allow us to maintain better control, efficiency, and visibility over the network traffic a...
ID: RrL20vr7huTaSyxpphyL9e9j808%3D
LOW Instance Uses Metadata Service IMDSv1 /infrostructure.tf: 34
detailsInstance metadata can be accessed with both IMDSv1 or IMDSv2. Although, IMDSv2 service is a session-oriented service, granting additional protect...
ID: Dc0MuVyjMGGkpOvdpI1tGJ5nlRk%3D
LOW Lambda Function Without Dead Letter Queue /lambda.tf: 12
detailsAWS Lambda Function should be configured for a Dead Letter Queue(DLQ)
ID: cf7U1lHvzVaLPvcxkajrgMhCWw8%3D
LOW S3 bucket notifications disabled /sqs.tf: 1
detailsS3 bucket notifications provide alerts triggered when certain operations are performed, which might be a helpful indicator for detecting unintended...
ID: NKyEokEUCn0iUyHX%2FLEZFEWmz8w%3D
LOW S3 bucket notifications disabled /Unsecure_Sensitive_data.tf: 1
detailsS3 bucket notifications provide alerts triggered when certain operations are performed, which might be a helpful indicator for detecting unintended...
ID: coaSxCN4Wke4W8io9gi7r9O4sqk%3D
LOW S3 bucket notifications disabled /lambda.tf: 12
detailsS3 bucket notifications provide alerts triggered when certain operations are performed, which might be a helpful indicator for detecting unintended...
ID: nKPJ%2FCXIZ0rpy5rfabfSd3WSwtU%3D
LOW Tags Not Copied to RDS Cluster Snapshot /rds.tf: 1
detailsTags of the RDS Cluster should be copied to the respective snapshots to ensure that snapshots retain important metadata for identification, cost al...
ID: 61gcNFz8ILbm4zNLWY2lDjRthts%3D
Fixed Issues (75)

Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
CRITICAL CVE-2020-1938 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2020-11996 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2020-13934 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2020-17527 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2021-25122 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2021-30639 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2021-41079 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2022-42252 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2023-24998 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2023-44487 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2024-24549 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2024-38286 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH Remote Desktop Port Open To Internet /AJP_Open_Port.tf: 1
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Unknown Port Exposed To Internet /AJP_Open_Port.tf: 11
HIGH Unrestricted Security Group Ingress /AJP_Open_Port.tf: 11
MEDIUM CVE-2019-17569 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2020-13943 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2020-1935 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2021-33037 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2023-42795 Maven-org.apache.tomcat:tomcat-util-9.0.22
MEDIUM CVE-2023-42795 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2023-45648 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2024-21733 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM HTTP Port Open To Internet /AJP_Open_Port.tf: 1
MEDIUM HttpOnly_Cookie_Flag_Not_Set /src/main/java/org/cysecurity/cspf/jvl/controller/LoginValidator.java: 59
MEDIUM HttpOnly_Cookie_Flag_Not_Set /src/main/java/org/cysecurity/cspf/jvl/controller/LoginValidator.java: 63
MEDIUM HttpOnly_Cookie_Flag_Not_Set /src/main/java/org/cysecurity/cspf/jvl/controller/LoginValidator.java: 64
MEDIUM HttpOnly_Cookie_Flag_Not_Set /src/main/webapp/admin/adminlogin.jsp: 27
MEDIUM SQL Analysis Services Port 2383 (TCP) Is Publicly Accessible /AJP_Open_Port.tf: 6
MEDIUM Security Group With Unrestricted Access To SSH /AJP_Open_Port.tf: 11
LOW CVE-2021-43980 Maven-org.apache.tomcat:tomcat-coyote-9.0.22

Use @Checkmarx to reach out to us for assistance.

Just send a PR comment with @Checkmarx followed by a natural language request.

Examples: @Checkmarx how are you able to help me? @Checkmarx rescan this PR

@juegge
Copy link
Copy Markdown
Contributor

juegge commented Nov 12, 2025

Logo
Checkmarx One – Scan Summary & Detailse03c8804-c014-4b35-b9b0-5496d87bc2e9

New Issues (59)

Checkmarx found the following issues in this Pull Request

Severity Issue Source File / Package Checkmarx Insight
HIGH CVE-2025-9784 Maven-io.undertow:undertow-core-2.0.9.Final
detailsRecommended version: 2.2.38.Final
Description: A flaw was found in Undertow where malformed client requests can trigger server-side stream resets without triggering abuse counters. This issue, r...
Attack Vector: NETWORK
Attack Complexity: LOW

ID: hmqAn%2FTyRpjFf5PdKLSf%2FME83tqUimpPaYDlW%2Bx7aIs%3D
Vulnerable Package
HIGH Remote Desktop Port Open To Internet /AJP_Open_Port.tf: 6
detailsThe Remote Desktop port is open to the internet in a Security Group
ID: n184d2i0e3AlwvbL%2FJBiRl9dy8w%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: SiAXHgRFmSnJM2NsYYpHUsdSjQ0%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: ReatByiMlBBN%2FRB7SJibAZ4%2FHVQ%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: JWq4Lixv30GsuJeJ4mY0f1FUE2c%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: CznX86T%2BSOFnBx%2BxPqAH2ogFbdg%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: cCF%2BttQ6mvoNLCEEL30H0wUzyWo%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: hkR%2BDU3C%2FfmgoJtUPRNP45HgA5k%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 9xpyyKkXXB%2FrZjfqdnbkSC3FECU%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: KVvlYBJ79MzapIUbLBPFfONDV%2Bs%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: VEfFRpRMjj%2FsEt5Cr8AvCrg%2BKgQ%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: Ml3z%2FsF5q3c2neurJEgtCi%2BJ2Fs%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 0xHCc%2FlMirk%2B27gimL1k5RqU5pE%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: UR7uKd5rxUUhYsIJw1f8Gce%2FyHc%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 4hn2t8Pkae3OpZNm7CQ%2Fyr6y5wo%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: RJTMJZflR3g%2BN5dl0QPDbWo2HD8%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: %2Fvg8OaLX1HpYHNefS1ttUzc64mM%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: OoFQ%2FJheoT2e8ILiEpHuoqggoJM%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: OuV1uNkwJurDpbYae7ld2SHPj%2BY%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 4jvbRU%2B72arEhXpjysba1yuwPlE%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: iXa0eR39ts06knLRgTcr4EI8I64%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 2Zx3v1MgE2E6flIPX9aDpcmFAUo%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: jjrdipl8x2qejIcEqs84XWw7uDg%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: lo%2FvWvaQG3GF7wr7e%2F8MOejGUfo%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: bGJpV6Wb%2BTVWqqCRwiBoesm46Hg%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: V58KhwRv3TmRIN4OFsvWQvkwPtQ%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: VLCBYTBXGh04DCN8NyKsPyI7skE%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: Igu3R7B7s49NoGrMOK2diIGlfmQ%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 7rnBvlakHbl6xJShMnz%2Br7n803E%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: rp%2BMtYbW9pkxDZa130o3pnSTLQM%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: snfE0BtC0HONM9I%2FeFWWA3nisWs%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: FTamKnTqBlQ30pRaFB0SfKPVZxc%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: ci%2FrmVz87oBdbVoBWnx%2B0odzhXY%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: dCGzrXvWHUL7Q%2BwP3wg0Sb0mufw%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: J2LXKQcLMuER0gg1yfDs3D7UXnI%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: EjIoP0v538k%2FaZVHooXZdn2ep%2FY%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: idBPp7JFC90S8MpnJPd89G5EZn8%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 8OxgpW8oGXG%2FU3KFYb1sdWtoHhI%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: XKHvGYlUie1KOLRkbhAPbx3RYQE%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 8sjFNQHwpPdSyZrOKlINCwIPy7c%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 9Tw3S2US2VIYaL8UuaKMS%2BcvM%2FY%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: Ho1WKMVs%2FpEMty%2Bi5j17qjsA9JU%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: 2vnxR%2B6jBBEsaUSpED6znAvCNsU%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: n4%2BpBjOefWE8ZBzL4%2BdidF%2FdFog%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: zuFnUa91eanZsIyydkvgtAHWL5I%3D
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
detailsA sensitive port, such as port 23 or port 110, is open for the whole network in either TCP or UDP protocol
ID: RW%2BvMIohdId6RkgndlmPNV60AhU%3D
HIGH Unknown Port Exposed To Internet /AJP_Open_Port.tf: 6
detailsAWS Security Group should not have an unknown port exposed to the entire Internet
ID: 9QBYw83goqJ9FNoz%2FtuSFg9uWyk%3D
HIGH Unrestricted Security Group Ingress /AJP_Open_Port.tf: 11
detailsSecurity groups allow ingress from 0.0.0.0:0 and/or ::/0
ID: tnUQtBqKQd3Dhbcn73FlAoNETco%3D
MEDIUM ELBv2 LB Access Log Disabled /infrostructure.tf: 3
detailsELBv2 LBs should have access log enabled to capture detailed information about requests sent to your load balancer.
ID: ATLpu3HKcTF0wxtbrMLsM7PWgsE%3D
MEDIUM HTTP Port Open To Internet /AJP_Open_Port.tf: 6
detailsThe HTTP port is open to the internet in a Security Group
ID: JcqtLegvYMi7izvMhDt4bjVprnE%3D
MEDIUM SQL Analysis Services Port 2383 (TCP) Is Publicly Accessible /AJP_Open_Port.tf: 6
detailsCheck if port 2383 on TCP is publicly accessible by checking the CIDR block range that can access it.
ID: K75jRH6kh9Jqn3zlVWY8b55y72o%3D
MEDIUM Security Group With Unrestricted Access To SSH /AJP_Open_Port.tf: 6
details'SSH' (TCP:22) should not be public in AWS Security Group
ID: xCAFPTB%2Fj%2Fdm71bPUcBz66F8AVQ%3D
LOW AWS EIP not attached to any instance /infrostructure.tf: 51
detailsUnattached EIPs from EC2 instances should be disabled to allow us to maintain better control, efficiency, and visibility over the network traffic a...
ID: RrL20vr7huTaSyxpphyL9e9j808%3D
LOW Instance Uses Metadata Service IMDSv1 /infrostructure.tf: 34
detailsInstance metadata can be accessed with both IMDSv1 or IMDSv2. Although, IMDSv2 service is a session-oriented service, granting additional protect...
ID: Dc0MuVyjMGGkpOvdpI1tGJ5nlRk%3D
LOW Lambda Function Without Dead Letter Queue /lambda.tf: 12
detailsAWS Lambda Function should be configured for a Dead Letter Queue(DLQ)
ID: cf7U1lHvzVaLPvcxkajrgMhCWw8%3D
LOW S3 bucket notifications disabled /Unsecure_Sensitive_data.tf: 1
detailsS3 bucket notifications provide alerts triggered when certain operations are performed, which might be a helpful indicator for detecting unintended...
ID: coaSxCN4Wke4W8io9gi7r9O4sqk%3D
LOW S3 bucket notifications disabled /lambda.tf: 12
detailsS3 bucket notifications provide alerts triggered when certain operations are performed, which might be a helpful indicator for detecting unintended...
ID: nKPJ%2FCXIZ0rpy5rfabfSd3WSwtU%3D
LOW S3 bucket notifications disabled /sqs.tf: 1
detailsS3 bucket notifications provide alerts triggered when certain operations are performed, which might be a helpful indicator for detecting unintended...
ID: NKyEokEUCn0iUyHX%2FLEZFEWmz8w%3D
LOW Tags Not Copied to RDS Cluster Snapshot /rds.tf: 1
detailsTags of the RDS Cluster should be copied to the respective snapshots to ensure that snapshots retain important metadata for identification, cost al...
ID: 61gcNFz8ILbm4zNLWY2lDjRthts%3D
Fixed Issues (74)

Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
CRITICAL CVE-2020-1938 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2020-11996 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2020-13934 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2020-17527 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2021-25122 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2021-30639 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2021-41079 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2022-42252 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2023-24998 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2023-44487 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2024-24549 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2024-34750 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2024-38286 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2025-52434 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH CVE-2025-53506 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
HIGH Remote Desktop Port Open To Internet /AJP_Open_Port.tf: 1
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Sensitive Port Is Exposed To Entire Network /AJP_Open_Port.tf: 6
HIGH Unknown Port Exposed To Internet /AJP_Open_Port.tf: 11
HIGH Unrestricted Security Group Ingress /AJP_Open_Port.tf: 11
MEDIUM CVE-2019-17569 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2020-13943 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2020-1935 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2021-33037 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2023-42795 Maven-org.apache.tomcat:tomcat-util-9.0.22
MEDIUM CVE-2023-42795 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2023-45648 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM CVE-2024-21733 Maven-org.apache.tomcat:tomcat-coyote-9.0.22
MEDIUM HTTP Port Open To Internet /AJP_Open_Port.tf: 1
MEDIUM SQL Analysis Services Port 2383 (TCP) Is Publicly Accessible /AJP_Open_Port.tf: 6
MEDIUM Security Group With Unrestricted Access To SSH /AJP_Open_Port.tf: 11
LOW CVE-2021-43980 Maven-org.apache.tomcat:tomcat-coyote-9.0.22

Use @Checkmarx to reach out to us for assistance.

Just send a PR comment with @Checkmarx followed by a natural language request.

Examples: @Checkmarx how are you able to help me? @Checkmarx rescan this PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file java Pull requests that update java code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

1 participant