=== exit code
0
=== end of exit code

=== stdout - plain
{
  "errors": [],
  "paths": {
    "scanned": [
      "targets/dependency_aware/log4j/log4shell.java",
      "targets/dependency_aware/log4j/maven_dep_tree.txt"
    ]
  },
  "results": [
    {
      "check_id": "rules.dependency_aware.log4j2_tainted_argument",
      "end": {
        "col": 36,
        "line": 33,
        "offset": 1037
      },
      "extra": {
        "engine_kind": "OSS",
        "fingerprint": "0x42",
        "lines": "requires login",
        "message": "log4j logger.error tainted argument",
        "metadata": {},
        "sca_info": {
          "dependency_match": {
            "dependency_pattern": {
              "ecosystem": "maven",
              "package": "org.apache.logging.log4j:log4j-core",
              "semver_range": "<= 0.0.2"
            },
            "found_dependency": {
              "allowed_hashes": {},
              "children": [],
              "ecosystem": "maven",
              "line_number": 3,
              "lockfile_path": "targets/dependency_aware/log4j/maven_dep_tree.txt",
              "manifest_path": "targets/dependency_aware/log4j/pom.xml",
              "package": "org.apache.logging.log4j:log4j-core",
              "transitivity": "direct",
              "version": "0.0.2"
            },
            "lockfile": "targets/dependency_aware/log4j/maven_dep_tree.txt"
          },
          "reachability_rule": true,
          "reachable": true,
          "sca_finding_schema": 20220913
        },
        "severity": "WARNING",
        "validation_state": "NO_VALIDATOR"
      },
      "path": "targets/dependency_aware/log4j/log4shell.java",
      "start": {
        "col": 13,
        "line": 33,
        "offset": 1014
      }
    }
  ],
  "skipped_rules": [],
  "time": "<masked in tests>",
  "version": "0.42"
}
=== end of stdout - plain

=== stderr - plain


┌─────────────┐
│ Scan Status │
└─────────────┘
  Scanning 3 files tracked by git with 0 Code rules, 1 Supply Chain rule:


  CODE RULES
  Nothing to scan.

  SUPPLY CHAIN RULES
  Scanning 1 file and 1 dependency source.

  Dependency Sources                                  Resolution Method   Ecosystem   Dependencies   Rules
 ──────────────────────────────────────────────────────────────────────────────────────────────────────────
  targets/dependency_aware/log4j/maven_dep_tree.txt   Lockfile            Maven       16                 1



┌──────────────┐
│ Scan Summary │
└──────────────┘
✅ Scan completed successfully.
 • Findings: 1 (1 blocking)
 • Rules run: 1
 • Targets scanned: 2
 • Parsed lines: ~100.0%
 • No ignore information available
Ran 1 rule on 2 files: 1 finding.

=== end of stderr - plain

=== stdout - color
<same as above: stdout - plain>
=== end of stdout - color

=== stderr - color
<same as above: stderr - plain>
=== end of stderr - color