Skip to content

feat(stachv3) : Added new methods to convert stachv3 json and arrow to table.#55

Open
sainath (sainathsagar) wants to merge 10 commits into
mainfrom
feat/stachv3_changes
Open

feat(stachv3) : Added new methods to convert stachv3 json and arrow to table.#55
sainath (sainathsagar) wants to merge 10 commits into
mainfrom
feat/stachv3_changes

Conversation

@sainathsagar
Copy link
Copy Markdown
Collaborator

@sainathsagar sainath (sainathsagar) commented Mar 23, 2026

Description: Added new methods to convert stachv3 json and arrow to table.

Jira card:
https://bpm.factset.com/browse/AAPI-4483

@RicoFactset
Copy link
Copy Markdown

Rico (RicoFactset) commented Mar 23, 2026

Logo
Checkmarx One – Scan Summary & Detailsb0ad1fb9-ce41-495b-b140-7c2bd5527b05


New Issues (6)

High: 6

Checkmarx found the following issues in this Pull Request

# Severity Issue Source File / Package Checkmarx Insight
1 HIGH CVE-2026-0994 Python-protobuf-6.32.0
detailsRecommended version: 6.33.5
Description: A Denial-of-Service (DoS) vulnerability exists in "google.protobuf.json_format.ParseDict()" in Python, where the "max_recursion_depth" limit can be...
Attack Vector: NETWORK
Attack Complexity: LOW
Vulnerable Package
2 HIGH Cxfa47c4e4-5ef9 Maven-com.fasterxml.jackson.core:jackson-core-2.13.5
detailsRecommended version: 2.18.6
Description: The non-blocking (async) JSON parser in jackson-core bypasses the "maxNumberLength" constraint (default: 1000 characters) defined in "StreamReadCon...
Attack Vector: NETWORK
Attack Complexity: LOW
Vulnerable Package
3 HIGH Path_Traversal enduser-tests/dotnet/Consumer/Program.cs: 13
detailsMethod Main at line 13 of /enduser-tests/dotnet/Consumer/Program.cs gets dynamic data from the args element. This element’s value then flows thr...
Attack Vector
4 HIGH Path_Traversal enduser-tests/dotnet/Consumer/Program.cs: 13
detailsMethod Main at line 13 of /enduser-tests/dotnet/Consumer/Program.cs gets dynamic data from the args element. This element’s value then flows thr...
Attack Vector
5 HIGH Path_Traversal enduser-tests/dotnet/Consumer/Program.cs: 13
detailsMethod Main at line 13 of /enduser-tests/dotnet/Consumer/Program.cs gets dynamic data from the args element. This element’s value then flows thr...
Attack Vector
6 HIGH Path_Traversal enduser-tests/dotnet/Consumer/Program.cs: 13
detailsMethod Main at line 13 of /enduser-tests/dotnet/Consumer/Program.cs gets dynamic data from the args element. This element’s value then flows thr...
Attack Vector

Fixed Issues (3)

High: 2 · Medium: 1

Great job! The following issues were fixed in this Pull Request

Severity Issue Source File / Package
HIGH CVE-2019-0820 Nuget-System.Text.RegularExpressions-4.3.0
HIGH CVE-2024-21907 Nuget-Newtonsoft.Json-12.0.2
MEDIUM CVE-2021-22570 Nuget-Google.Protobuf-3.12.3

Use Checkmarx (@Checkmarx) to interact with Checkmarx PR Assistant.
Examples:
@Checkmarx how are you able to help me?
@Checkmarx rescan this PR

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants