Skip to content

Conversation

@dependabot
Copy link

@dependabot dependabot bot commented on behalf of github Dec 22, 2025

Bumps @angular/compiler from 20.1.3 to 20.3.15.

Release notes

Sourced from @​angular/compiler's releases.

20.3.15

compiler

Commit Description
fix - d1ca8ae043 prevent XSS via SVG animation attributeName and MathML/SVG URLs

20.3.14

http

Commit Description
fix - 0276479e7d prevent XSRF token leakage to protocol-relative URLs

20.3.13

No release notes provided.

20.3.12

No release notes provided.

20.3.11

common

Commit Description
fix - 5047849a4a remove placeholder image listeners once view is removed

compiler

Commit Description
fix - f9d0818087 support arbitrary nesting in :host-context()
fix - 106b9040df support commas in :host() argument
fix - 9419ea348a support complex selectors in :nth-child()
fix - 036c5d2a07 support one additional level of nesting in :host()

core

Commit Description
fix - dcdd1bcdbb skip leave animations on view swaps

20.3.10

compiler-cli

Commit Description
fix - 840db59dc1 make required inputs diagnostic less noisy

migrations

Commit Description
fix - a45e6b2b66 Prevent removal of templates referenced with preceding whitespace characters

20.3.9

No release notes provided.

20.3.8

common

... (truncated)

Changelog

Sourced from @​angular/compiler's changelog.

20.3.15 (2025-12-01)

compiler

Commit Type Description
d1ca8ae043 fix prevent XSS via SVG animation attributeName and MathML/SVG URLs

19.2.17 (2025-12-01)

compiler

Commit Type Description
7c42e2ebeb fix prevent XSS via SVG animation attributeName and MathML/SVG URLs

19.2.16 (2025-11-26)

http

Commit Type Description
05fe6686a9 fix prevent XSRF token leakage to protocol-relative URLs

21.1.0-next.0 (2025-11-25)

platform-browser

Commit Type Description
ec9dc94cee feat add context to createApplication
ab67988d2e feat resolve JIT resources in createApplication

router

Commit Type Description
a03c82564d feat Add scroll behavior controls on router navigation

... (truncated)

Commits
  • d1ca8ae fix(compiler): prevent XSS via SVG animation attributeName and MathML/SVG URLs
  • f689269 Revert "fix(compiler): support one additional level of nesting in :host()"
  • 7b2e6ca Revert "fix(compiler): support arbitrary nesting in :host-context()"
  • 6036eef Revert "fix(compiler): support commas in :host() argument"
  • a44658b Revert "fix(compiler): support complex selectors in :nth-child()"
  • 9419ea3 fix(compiler): support complex selectors in :nth-child()
  • 2531863 test(compiler): add test for :host:has(> .foo)
  • 106b904 fix(compiler): support commas in :host() argument
  • f9d0818 fix(compiler): support arbitrary nesting in :host-context()
  • b47054c Revert "fix(compiler): support commas in :host() argument"
  • Additional commits viewable in compare view

Dependabot compatibility score

Dependabot will resolve any conflicts with this PR as long as you don't alter it yourself. You can also trigger a rebase manually by commenting @dependabot rebase.


Dependabot commands and options

You can trigger Dependabot actions by commenting on this PR:

  • @dependabot rebase will rebase this PR
  • @dependabot recreate will recreate this PR, overwriting any edits that have been made to it
  • @dependabot merge will merge this PR after your CI passes on it
  • @dependabot squash and merge will squash and merge this PR after your CI passes on it
  • @dependabot cancel merge will cancel a previously requested merge and block automerging
  • @dependabot reopen will reopen this PR if it is closed
  • @dependabot close will close this PR and stop Dependabot recreating it. You can achieve the same result by closing it manually
  • @dependabot show <dependency name> ignore conditions will show all of the ignore conditions of the specified dependency
  • @dependabot ignore this major version will close this PR and stop Dependabot creating any more for this major version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this minor version will close this PR and stop Dependabot creating any more for this minor version (unless you reopen the PR or upgrade to it yourself)
  • @dependabot ignore this dependency will close this PR and stop Dependabot creating any more for this dependency (unless you reopen the PR or upgrade to it yourself)
    You can disable automated security fix PRs for this repo from the Security Alerts page.

Bumps [@angular/compiler](https://github.com/angular/angular/tree/HEAD/packages/compiler) from 20.1.3 to 20.3.15.
- [Release notes](https://github.com/angular/angular/releases)
- [Changelog](https://github.com/angular/angular/blob/main/CHANGELOG.md)
- [Commits](https://github.com/angular/angular/commits/20.3.15/packages/compiler)

---
updated-dependencies:
- dependency-name: "@angular/compiler"
  dependency-version: 20.3.15
  dependency-type: direct:production
...

Signed-off-by: dependabot[bot] <support@github.com>
@dependabot dependabot bot added dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code labels Dec 22, 2025
@ImagineBuildBot
Copy link

Logo
Checkmarx SAST - Scan Summary & Details

Cx-SAST Summary

Total of 233 vulnerabilities
High 21 High
Medium 197 Medium
Low 0 Low
Info 15 Info

Violation Summary

High 20 HIGH
Medium 160 MEDIUM

View more details on Checkmarx UI

Cx-SAST Details

Click to see details
Lines Severity Category File Link
106 MEDIUM Unchecked_Input_for_Loop_Condition flink-runtime/src/main/java/org/apache/flink/runtime/blob/BlobOutputStream.java Checkmarx
222 MEDIUM Unchecked_Input_for_Loop_Condition flink-runtime/src/main/java/org/apache/flink/runtime/blob/BlobClient.java Checkmarx
390 MEDIUM Unchecked_Input_for_Loop_Condition flink-streaming-java/src/main/java/org/apache/flink/streaming/api/operators/collect/CollectSinkFunction.java Checkmarx
495 MEDIUM Unchecked_Input_for_Loop_Condition flink-runtime-web/src/test/java/org/apache/flink/runtime/webmonitor/WebFrontendITCase.java Checkmarx
97 MEDIUM Unchecked_Input_for_Loop_Condition flink-runtime/src/main/java/org/apache/flink/runtime/blob/BlobServerConnection.java Checkmarx
83 109 MEDIUM Unchecked_Input_for_Loop_Condition flink-runtime/src/main/java/org/apache/flink/runtime/operators/sort/MergeIterator.java Checkmarx
80 MEDIUM Stored_Command_Injection flink-external-resources/flink-external-resource-gpu/src/main/java/org/apache/flink/externalresource/gpu/GPUDriver.java Checkmarx
223 MEDIUM Stored_Absolute_Path_Traversal flink-end-to-end-tests/flink-end-to-end-tests-sql/src/test/java/org/apache/flink/table/sql/SqlITCaseBase.java Checkmarx
266 291 MEDIUM Stored_Absolute_Path_Traversal flink-tests/src/test/java/org/apache/flink/test/streaming/runtime/CacheITCase.java Checkmarx
84 168 MEDIUM Stored_Absolute_Path_Traversal flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/debezium/DebeziumJsonFileSystemITCase.java Checkmarx
78 82 MEDIUM Stored_Absolute_Path_Traversal flink-python/src/test/java/org/apache/flink/python/util/CompressionUtilsTest.java Checkmarx
153 MEDIUM Stored_Absolute_Path_Traversal flink-table/flink-sql-client/src/test/java/org/apache/flink/table/client/cli/CliClientTest.java Checkmarx
292 MEDIUM Stored_Absolute_Path_Traversal flink-state-backends/flink-statebackend-rocksdb/src/test/java/org/apache/flink/contrib/streaming/state/RocksDBStateUploaderTest.java Checkmarx
84 MEDIUM Stored_Absolute_Path_Traversal flink-end-to-end-tests/flink-end-to-end-tests-common/src/main/java/org/apache/flink/tests/util/TestUtils.java Checkmarx
316 MEDIUM Stored_Absolute_Path_Traversal flink-core/src/test/java/org/apache/flink/testutils/ClassLoaderUtils.java Checkmarx
58 MEDIUM Stored_Absolute_Path_Traversal tools/ci/flink-ci-tools/src/main/java/org/apache/flink/tools/ci/utils/notice/NoticeParser.java Checkmarx
154 MEDIUM Stored_Absolute_Path_Traversal flink-clients/src/test/java/org/apache/flink/client/testjar/ClasspathProviderExtension.java Checkmarx
265 MEDIUM Stored_Absolute_Path_Traversal flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/maxwell/MaxwellJsonSerDerTest.java Checkmarx
1020 MEDIUM Stored_Absolute_Path_Traversal flink-runtime/src/test/java/org/apache/flink/runtime/rest/RestServerEndpointITCase.java Checkmarx
50 MEDIUM Stored_Absolute_Path_Traversal flink-clients/src/test/java/org/apache/flink/client/cli/CliFrontendTestUtils.java Checkmarx
132 MEDIUM Stored_Absolute_Path_Traversal flink-end-to-end-tests/flink-distributed-cache-via-blob-test/src/main/java/org/apache/flink/streaming/tests/DistributedCacheViaBlobTestProgram.java Checkmarx
142 MEDIUM Stored_Absolute_Path_Traversal flink-core/src/main/java/org/apache/flink/util/FileUtils.java Checkmarx
61 68 77 MEDIUM Stored_Absolute_Path_Traversal flink-end-to-end-tests/flink-end-to-end-tests-common/src/test/java/org/apache/flink/tests/util/util/FileUtilsTest.java Checkmarx
104 150 MEDIUM Stored_Absolute_Path_Traversal flink-connectors/flink-connector-files/src/test/java/org/apache/flink/connector/file/sink/FileSinkCommittableSerializerMigrationTest.java Checkmarx
85 91 MEDIUM Stored_Absolute_Path_Traversal flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/ogg/OggJsonFileSystemITCase.java Checkmarx
136 224 MEDIUM Stored_Absolute_Path_Traversal flink-connectors/flink-connector-files/src/test/java/org/apache/flink/connector/file/src/FileSourceTextLinesITCase.java Checkmarx
164 165 MEDIUM Stored_Absolute_Path_Traversal flink-runtime/src/test/java/org/apache/flink/runtime/rest/MultipartUploadExtension.java Checkmarx
105 259 MEDIUM Stored_Absolute_Path_Traversal flink-runtime/src/test/java/org/apache/flink/runtime/blob/FileSystemBlobStoreTest.java Checkmarx
451 MEDIUM Stored_Absolute_Path_Traversal flink-end-to-end-tests/flink-end-to-end-tests-common/src/main/java/org/apache/flink/tests/util/flink/FlinkDistribution.java Checkmarx
50 107 MEDIUM Stored_Absolute_Path_Traversal flink-core/src/test/java/org/apache/flink/core/fs/RefCountedFileWithStreamTest.java Checkmarx
512 MEDIUM Stored_Absolute_Path_Traversal flink-runtime/src/main/java/org/apache/flink/runtime/blob/BlobUtils.java Checkmarx
73 MEDIUM Stored_Absolute_Path_Traversal flink-runtime/src/test/java/org/apache/flink/runtime/io/network/partition/hybrid/tiered/file/ProducerMergedPartitionFileWriterTest.java Checkmarx
272 MEDIUM Stored_Absolute_Path_Traversal flink-connectors/flink-connector-hive/src/test/java/org/apache/flink/connectors/hive/FlinkEmbeddedHiveRunner.java Checkmarx
71 MEDIUM Stored_Absolute_Path_Traversal flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/ogg/OggJsonSerDeSchemaTest.java Checkmarx
407 408 MEDIUM Stored_Absolute_Path_Traversal flink-core/src/test/java/org/apache/flink/util/FileUtilsTest.java Checkmarx
57 79 MEDIUM Stored_Absolute_Path_Traversal flink-docs/src/test/java/org/apache/flink/docs/rest/OpenApiSpecGeneratorTest.java Checkmarx
258 MEDIUM Stored_Absolute_Path_Traversal flink-formats/flink-avro/src/test/java/org/apache/flink/formats/avro/typeutils/AvroSerializerSnapshotTest.java Checkmarx
339 MEDIUM Stored_Absolute_Path_Traversal tools/ci/flink-ci-tools/src/main/java/org/apache/flink/tools/ci/licensecheck/JarFileChecker.java Checkmarx
59 MEDIUM Stored_Absolute_Path_Traversal flink-test-utils-parent/flink-test-utils/src/main/java/org/apache/flink/test/util/FileUtils.java Checkmarx
284 MEDIUM Stored_Absolute_Path_Traversal flink-connectors/flink-connector-files/src/test/java/org/apache/flink/connector/file/sink/writer/FileWriterBucketStateSerializerMigrationTest.java Checkmarx
212 MEDIUM Stored_Absolute_Path_Traversal flink-runtime-web/src/test/java/org/apache/flink/runtime/webmonitor/WebFrontendITCase.java Checkmarx
355 MEDIUM Stored_Absolute_Path_Traversal flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/debezium/DebeziumJsonSerDeSchemaTest.java Checkmarx
167 MEDIUM Stored_Absolute_Path_Traversal flink-end-to-end-tests/flink-end-to-end-tests-hive/src/test/java/org/apache/flink/tests/hive/HiveITCase.java Checkmarx
303 MEDIUM Stored_Absolute_Path_Traversal flink-core/src/main/java/org/apache/flink/util/IOUtils.java Checkmarx
266 MEDIUM Stored_Absolute_Path_Traversal flink-streaming-java/src/test/java/org/apache/flink/streaming/api/functions/sink/filesystem/BucketStateSerializerTest.java Checkmarx
304 MEDIUM Stored_Absolute_Path_Traversal flink-test-utils-parent/flink-connector-test-utils/src/main/java/org/apache/flink/connector/testframe/container/FlinkImageBuilder.java Checkmarx
520 MEDIUM Stored_Absolute_Path_Traversal flink-core/src/test/java/org/apache/flink/api/common/typeutils/TypeSerializerUpgradeTestBase.java Checkmarx
333 MEDIUM Stored_Absolute_Path_Traversal flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/canal/CanalJsonSerDeSchemaTest.java Checkmarx
41 53 91 MEDIUM Stored_Absolute_Path_Traversal flink-test-utils-parent/flink-test-utils-junit/src/main/java/org/apache/flink/testutils/junit/utils/TempDirUtils.java Checkmarx
529 530 MEDIUM Stored_Absolute_Path_Traversal flink-runtime/src/test/java/org/apache/flink/runtime/rest/FileUploadHandlerITCase.java Checkmarx
136 MEDIUM Stored_Absolute_Path_Traversal flink-yarn-tests/src/test/java/org/apache/flink/yarn/testjob/YarnTestArchiveJob.java Checkmarx
92 96 100 MEDIUM Stored_Absolute_Path_Traversal flink-java/src/test/java/org/apache/flink/api/java/utils/ParameterToolTest.java Checkmarx
88 MEDIUM Stored_Absolute_Path_Traversal flink-formats/flink-hadoop-bulk/src/test/java/org/apache/flink/formats/hadoop/bulk/HadoopPathBasedPendingFileRecoverableSerializerMigrationTest.java Checkmarx
1512 1515 1518 1521 1527 1530 1531 MEDIUM Same_Seed_in_PRNG flink-table/flink-table-planner/src/test/scala/org/apache/flink/table/planner/expressions/ScalarFunctionsTest.scala Checkmarx
80 94 120 135 151 183 MEDIUM Same_Seed_in_PRNG flink-scala/src/test/scala/org/apache/flink/api/scala/runtime/TupleSerializerTest.scala Checkmarx
39 MEDIUM Same_Seed_in_PRNG flink-tests/src/test/scala/org/apache/flink/api/scala/manual/MassiveCaseClassSortingITCase.scala Checkmarx
495 MEDIUM SSRF flink-runtime-web/src/test/java/org/apache/flink/runtime/webmonitor/WebFrontendITCase.java Checkmarx
97 MEDIUM Privacy_Violation flink-runtime/src/main/java/org/apache/flink/runtime/security/modules/HadoopModule.java Checkmarx
231 MEDIUM Missing_HSTS_Header flink-end-to-end-tests/flink-end-to-end-tests-common/src/main/java/org/apache/flink/tests/util/AutoClosableProcess.java Checkmarx
167 MEDIUM Input_Path_Not_Canonicalized flink-end-to-end-tests/flink-end-to-end-tests-hive/src/test/java/org/apache/flink/tests/hive/HiveITCase.java Checkmarx
73 MEDIUM Input_Path_Not_Canonicalized flink-runtime/src/test/java/org/apache/flink/runtime/io/network/partition/hybrid/tiered/file/ProducerMergedPartitionFileWriterTest.java Checkmarx
57 79 MEDIUM Input_Path_Not_Canonicalized flink-docs/src/test/java/org/apache/flink/docs/rest/OpenApiSpecGeneratorTest.java Checkmarx
512 MEDIUM Input_Path_Not_Canonicalized flink-runtime/src/main/java/org/apache/flink/runtime/blob/BlobUtils.java Checkmarx
1020 MEDIUM Input_Path_Not_Canonicalized flink-runtime/src/test/java/org/apache/flink/runtime/rest/RestServerEndpointITCase.java Checkmarx
266 291 MEDIUM Input_Path_Not_Canonicalized flink-tests/src/test/java/org/apache/flink/test/streaming/runtime/CacheITCase.java Checkmarx
84 MEDIUM Input_Path_Not_Canonicalized flink-end-to-end-tests/flink-end-to-end-tests-common/src/main/java/org/apache/flink/tests/util/TestUtils.java Checkmarx
142 MEDIUM Input_Path_Not_Canonicalized flink-core/src/main/java/org/apache/flink/util/FileUtils.java Checkmarx
105 259 MEDIUM Input_Path_Not_Canonicalized flink-runtime/src/test/java/org/apache/flink/runtime/blob/FileSystemBlobStoreTest.java Checkmarx
153 MEDIUM Input_Path_Not_Canonicalized flink-table/flink-sql-client/src/test/java/org/apache/flink/table/client/cli/CliClientTest.java Checkmarx
92 96 100 MEDIUM Input_Path_Not_Canonicalized flink-java/src/test/java/org/apache/flink/api/java/utils/ParameterToolTest.java Checkmarx
260 285 MEDIUM Input_Path_Not_Canonicalized flink-runtime/src/main/java/org/apache/flink/runtime/blob/BlobKey.java Checkmarx
71 MEDIUM Input_Path_Not_Canonicalized flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/ogg/OggJsonSerDeSchemaTest.java Checkmarx
50 MEDIUM Input_Path_Not_Canonicalized flink-clients/src/test/java/org/apache/flink/client/cli/CliFrontendTestUtils.java Checkmarx
136 224 MEDIUM Input_Path_Not_Canonicalized flink-connectors/flink-connector-files/src/test/java/org/apache/flink/connector/file/src/FileSourceTextLinesITCase.java Checkmarx
284 MEDIUM Input_Path_Not_Canonicalized flink-connectors/flink-connector-files/src/test/java/org/apache/flink/connector/file/sink/writer/FileWriterBucketStateSerializerMigrationTest.java Checkmarx
136 MEDIUM Input_Path_Not_Canonicalized flink-yarn-tests/src/test/java/org/apache/flink/yarn/testjob/YarnTestArchiveJob.java Checkmarx
58 MEDIUM Input_Path_Not_Canonicalized tools/ci/flink-ci-tools/src/main/java/org/apache/flink/tools/ci/utils/notice/NoticeParser.java Checkmarx
288 MEDIUM Input_Path_Not_Canonicalized flink-table/flink-sql-client/src/test/java/org/apache/flink/table/client/SqlClientTest.java Checkmarx
265 MEDIUM Input_Path_Not_Canonicalized flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/maxwell/MaxwellJsonSerDerTest.java Checkmarx
272 MEDIUM Input_Path_Not_Canonicalized flink-connectors/flink-connector-hive/src/test/java/org/apache/flink/connectors/hive/FlinkEmbeddedHiveRunner.java Checkmarx
88 MEDIUM Input_Path_Not_Canonicalized flink-formats/flink-hadoop-bulk/src/test/java/org/apache/flink/formats/hadoop/bulk/HadoopPathBasedPendingFileRecoverableSerializerMigrationTest.java Checkmarx
66 MEDIUM Input_Path_Not_Canonicalized flink-scala/src/test/java/org/apache/flink/api/scala/operators/ScalaCsvOutputFormatTest.java Checkmarx
266 MEDIUM Input_Path_Not_Canonicalized flink-streaming-java/src/test/java/org/apache/flink/streaming/api/functions/sink/filesystem/BucketStateSerializerTest.java Checkmarx
50 107 MEDIUM Input_Path_Not_Canonicalized flink-core/src/test/java/org/apache/flink/core/fs/RefCountedFileWithStreamTest.java Checkmarx
304 MEDIUM Input_Path_Not_Canonicalized flink-test-utils-parent/flink-connector-test-utils/src/main/java/org/apache/flink/connector/testframe/container/FlinkImageBuilder.java Checkmarx
355 MEDIUM Input_Path_Not_Canonicalized flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/debezium/DebeziumJsonSerDeSchemaTest.java Checkmarx
104 150 MEDIUM Input_Path_Not_Canonicalized flink-connectors/flink-connector-files/src/test/java/org/apache/flink/connector/file/sink/FileSinkCommittableSerializerMigrationTest.java Checkmarx
529 530 MEDIUM Input_Path_Not_Canonicalized flink-runtime/src/test/java/org/apache/flink/runtime/rest/FileUploadHandlerITCase.java Checkmarx
85 91 MEDIUM Input_Path_Not_Canonicalized flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/ogg/OggJsonFileSystemITCase.java Checkmarx
132 MEDIUM Input_Path_Not_Canonicalized flink-end-to-end-tests/flink-distributed-cache-via-blob-test/src/main/java/org/apache/flink/streaming/tests/DistributedCacheViaBlobTestProgram.java Checkmarx
333 MEDIUM Input_Path_Not_Canonicalized flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/canal/CanalJsonSerDeSchemaTest.java Checkmarx
84 168 MEDIUM Input_Path_Not_Canonicalized flink-formats/flink-json/src/test/java/org/apache/flink/formats/json/debezium/DebeziumJsonFileSystemITCase.java Checkmarx
78 82 MEDIUM Input_Path_Not_Canonicalized flink-python/src/test/java/org/apache/flink/python/util/CompressionUtilsTest.java Checkmarx
157 MEDIUM Input_Path_Not_Canonicalized flink-state-backends/flink-statebackend-rocksdb/src/test/java/org/apache/flink/contrib/streaming/state/RocksDBStateDownloaderTest.java Checkmarx
339 MEDIUM Input_Path_Not_Canonicalized tools/ci/flink-ci-tools/src/main/java/org/apache/flink/tools/ci/licensecheck/JarFileChecker.java Checkmarx
41 53 91 MEDIUM Input_Path_Not_Canonicalized flink-test-utils-parent/flink-test-utils-junit/src/main/java/org/apache/flink/testutils/junit/utils/TempDirUtils.java Checkmarx
292 MEDIUM Input_Path_Not_Canonicalized flink-state-backends/flink-statebackend-rocksdb/src/test/java/org/apache/flink/contrib/streaming/state/RocksDBStateUploaderTest.java Checkmarx
223 MEDIUM Input_Path_Not_Canonicalized flink-end-to-end-tests/flink-end-to-end-tests-sql/src/test/java/org/apache/flink/table/sql/SqlITCaseBase.java Checkmarx
164 165 MEDIUM Input_Path_Not_Canonicalized flink-runtime/src/test/java/org/apache/flink/runtime/rest/MultipartUploadExtension.java Checkmarx
59 MEDIUM Input_Path_Not_Canonicalized flink-test-utils-parent/flink-test-utils/src/main/java/org/apache/flink/test/util/FileUtils.java Checkmarx
407 408 MEDIUM Input_Path_Not_Canonicalized flink-core/src/test/java/org/apache/flink/util/FileUtilsTest.java Checkmarx
520 MEDIUM Input_Path_Not_Canonicalized flink-core/src/test/java/org/apache/flink/api/common/typeutils/TypeSerializerUpgradeTestBase.java Checkmarx
258 MEDIUM Input_Path_Not_Canonicalized flink-formats/flink-avro/src/test/java/org/apache/flink/formats/avro/typeutils/AvroSerializerSnapshotTest.java Checkmarx
66 MEDIUM Input_Path_Not_Canonicalized flink-java/src/test/java/org/apache/flink/api/java/io/CsvOutputFormatTest.java Checkmarx
215 MEDIUM Input_Path_Not_Canonicalized flink-test-utils-parent/flink-migration-test-utils/src/main/java/org/apache/flink/test/migration/MigrationTestsSnapshotGenerator.java Checkmarx
61 68 77 MEDIUM Input_Path_Not_Canonicalized flink-end-to-end-tests/flink-end-to-end-tests-common/src/test/java/org/apache/flink/tests/util/util/FileUtilsTest.java Checkmarx
316 MEDIUM Input_Path_Not_Canonicalized flink-core/src/test/java/org/apache/flink/testutils/ClassLoaderUtils.java Checkmarx
451 MEDIUM Input_Path_Not_Canonicalized flink-end-to-end-tests/flink-end-to-end-tests-common/src/main/java/org/apache/flink/tests/util/flink/FlinkDistribution.java Checkmarx
261 MEDIUM Improper_Restriction_of_Stored_XXE_Ref flink-table/flink-table-planner/src/test/java/org/apache/flink/table/planner/utils/DiffRepository.java Checkmarx
187 MEDIUM Improper_Locking flink-python/src/main/java/org/apache/beam/runners/fnexecution/control/DefaultJobBundleFactory.java Checkmarx
295 MEDIUM Improper_Locking flink-streaming-java/src/main/java/org/apache/flink/streaming/runtime/tasks/mailbox/TaskMailboxImpl.java Checkmarx
127 HIGH Unsafe_Reflection flink-table/flink-table-planner/src/test/scala/org/apache/flink/table/planner/codegen/agg/AggTestBase.scala Checkmarx
69 125 199 366 416 HIGH Unsafe_Reflection flink-scala/src/main/scala/org/apache/flink/api/scala/ClosureCleaner.scala Checkmarx
83 HIGH Unsafe_Reflection flink-table/flink-table-planner/src/test/scala/org/apache/flink/table/planner/plan/metadata/MetadataHandlerConsistencyTest.scala Checkmarx
79 HIGH Unsafe_Reflection flink-table/flink-table-planner/src/main/scala/org/apache/flink/table/planner/typeutils/LegacyDataViewUtils.scala Checkmarx
260 285 HIGH Stored_XSS flink-runtime/src/main/java/org/apache/flink/runtime/blob/BlobKey.java Checkmarx
256 HIGH Stored_XSS flink-runtime/src/main/java/org/apache/flink/runtime/blob/BlobServerConnection.java Checkmarx
175 214 275 276 277 325 HIGH Deserialization_of_Untrusted_Data flink-runtime/src/test/java/org/apache/flink/runtime/rest/handler/job/JobSubmitHandlerTest.java Checkmarx
64 HIGH Deserialization_of_Untrusted_Data flink-runtime/src/main/java/org/apache/flink/runtime/entrypoint/component/FileJobGraphRetriever.java Checkmarx
115 124 HIGH Deserialization_of_Untrusted_Data flink-core/src/test/java/org/apache/flink/util/AbstractIDTest.java Checkmarx

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

dependencies Pull requests that update a dependency file javascript Pull requests that update javascript code

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants