All 2 CVE vulnerabilities found in sonarqube-scan-action, with AI-generated Chinese analysis, references, and POCs.
Vendor: SonarSource
| CVE ID | Title | CVSS | Severity | Published |
|---|---|---|---|---|
| CVE-2025-59844 | Argument injection vulnerability in SonarQube Scan Action CWE-78 | 8.8 | - | 2025-09-26 |
| CVE-2025-58178 | Command Injection via sonarqube-scan-action GitHub Action CWE-77 | 7.8 | High | 2025-09-02 |
All 2 known CVE vulnerabilities affecting sonarqube-scan-action with full Chinese analysis, references, and POCs where available.