2.1.17 | Sep 3, 2026 | 2.3.63 | Developer Assist: We have added Checkmarx Developer Assist to the Eclipse plugin. This new tool empowers developers to identify risks in their code in realtime and harness the power of AI to remediate the risks on the spot. Checkmarx Dev Assist comprises two main elements: Realtime Scanning - Identify vulnerabilities in realtime during IDE development of both human-generated and AI-generated code. Our super-fast scanners run in the background whenever you open or edit a relevant file. Our scanners identify vulnerabilities and unmasked secrets in your code. We also identify vulnerable or malicious container images and open source packages used in your project. Results are marked as Problems which are highlighted in the code and annotated with identifying icons. Agentic-AI Remediation – Initiate an Agentic-AI session to receive remediation suggestions. Checkmarx feeds all relevant info to the AI agent which accesses our MCP server to gather data from our proprietary databases and customized AI models. The AI assistant then uses this data to generate remediated code for your project. You can accept the suggested changes or you can chat with the AI agent to learn more about the vulnerability and fine-tune the remediation suggestion.
For more information, see documentation | |
2.1.16 | June 28, 2026 | 2.3.54 | | |
2.1.15 | Apr 13, 2026 | 2.3.48 | | |
2.1.14 | Mar 1, 2026 | 2.3.45 | | |
2.1.13 | Oct 16, 2025 | 2.3.37 | | |
2.1.12 | Aug 29, 2025 | 2.3.33 | In the Learn More tab for specific results, we now give a link to the relevant CWE page. Renamed the "comment" added during risk triage as "note". Updated the Checkmarx logo. Updated the content of the README.md file.
| |
2.1.11 | Mar 11, 2025 | 2.3.16 | | |
2.1.10 | Dec 31, 2024 | 2.3.9 | | |
2.1.9 | Dec 17, 2024 | 2.3.7 | | |
2.1.8 | Dec 04, 2024 | 2.3.6 | | |
2.1.7 | Nov 20, 2024 | 2.3.5 | | |
2.1.6 | Oct 10, 2024 | 2.3.0 | | |
2.1.5 | Sep 4, 2024 | 2.2.5 | | |
2.1.2 | May 20, 2024 | 2.1.2 | | |
2.1.1 | Apr 28, 2024 | 2.0.61 | | |
2.1.0 | Apr 08, 2024 | 2.0.61 | | |
2.0.9 | Mar 14, 2024 | 2.0.61 | | |
2.0.8 | Nov 20, 2023 | 2.0.61 | | Updated libraries in order to remediate security issues. Updated for CLI version that uses GO version 1.21.1, in order to remediate a vulnerability.
|
2.0.7 | July 4, 2023 | 2.0.50 | You can now initiate scans directly from your eclipse IDE. This empowers developers to identify vulnerabilities and remediate them as they code. You can run a new scan on an existing Checkmarx project by simply clicking on the "play" button in the Checkmarx panel. A Checkmarx scan runs on the files in your current workspace. A sanity check is run to verify that the project and branch in your workspace match the project and branch that were scanned for this project. If a mismatch is detected, then a warning message is shown. TipThis feature needs to be enabled for your organization's account by a Checkmarx admin user under Account Settings. In the SAST results viewer, we added new tabs with additional info about each vulnerability. Learn More - Gives detailed information about the the nature of the risk and their causes, as well as remediation recommendations. Remediation Examples - Shows a sample of code that is subject to this vulnerability, followed by a remediated version of that code.
We now create nightly pre-release versions of this extension whenever we merge new code. The pre-release version can be installed from Marketplace.
| Disabled triaging for SCA risks, because it hadn't been functioning properly. Fixed issues with invalid thread access.
|
2.0.6 | May 25, 2023 | 2.0.45 | | |
2.0.5 | Nov 10, 2022 | 2.0.34 | General improvements and bug fixes | |
2.0.4 | Oct 27, 2002 | 2.0.31 | We have simplified the integration procedure for IDE plugins. It is no longer required to enter the Base URL or Tenant Name of your Checkmarx One account. Now, you just enter your API Key, and we extract all of the relevant account info from that Key. In the Checkmarx AST settings, there is now a field for adding additional params. This can be used to manually submit the base url and tenant name (in case there is a problem extracting them from the API Key) or to add global params such as --debug or --proxy. To learn more about CLI params, see Global Flags. The filter setting were changed so that by default Not Exploitable and Proposed Not Exploitable vulnerabilities are filtered out of the display.
| |
2.0.3 | April 13, 2022 | 2.0.16 | | |
2.0.2 | Mar 2, 2022 | 2.0.13 | | |
2.0.1 | Feb 11, 2022 | 2.0.12 | | |
2.0.0 | Jan 26, 2022 | 2.0.10 | Added ability to triage results directly from the IDE console Added a brief description for SAST vulnerabilities Updated UI elements to reflect the new Checkmarx branding (e.g., logo)
| |
1.0.0 | Nov 2, 2021 | 2.0.4 | Import Checkmarx One scan results into your IDE Show results from all scan types (CxSAST, CxSCA, and KICS) Group results by severity or query name Navigate from results directly to the vulnerable code in the editor Vulnerable code is highlighted in the editor
| |