microsoft / microsoft/azure-tools-for-java

[IntelliJ] Uncaught Exception Error retrieving vulnerability data from GitHub Security Advisory API java.io.IOException: EOF reached while reading

Open
#12,121 0 comments 0 reactions 0 assignees View on GitHub

Nobody has claimed this yet.

Dominant language
Java
Stars
262
Forks
185
Avg merge
2d 21h
Merged PRs (30d)
1

Description

IntelliJ build version: 2025.2.6.2 IU-252.28539.54
OS: Windows 11
JDK: JetBrains s.r.o. 21.0.9
Plugin version: 3.97.3-2025.2
Additional Info: None
Parent component:

com.intellij.openapi.wm.impl.IdeRootPane[,8,8,2048x1032,invalid,layout=com.intellij.openapi.wm.impl.IdeRootPane$CustomHeaderRootLayout,alignmentX=0.0,alignmentY=0.0,border=,flags=449,maximumSize=,minimumSize=,preferredSize=]

Error message:

IdeaLoggingEvent[message=Error retrieving vulnerability data from GitHub Security Advisory API, throwable=java.io.IOException: EOF reached while reading
	at <REDACTED: user-file-path>(HttpClientImpl.java:970)
	at com.microsoft.azure.toolkit.intellij.appmod.javaupgrade.service.CVECheckService.retrieveVulnerabilityData(CVECheckService.java:312)
	at com.microsoft.azure.toolkit.intellij.appmod.javaupgrade.service.CVECheckService.fetchCves(CVECheckService.java:241)
	at com.microsoft.azure.toolkit.intellij.appmod.javaupgrade.service.CVECheckService.getCveUpgradeIssues(CVECheckService.java:200)
	at com.microsoft.azure.toolkit.intellij.appmod.javaupgrade.service.CVECheckService.batchGetCVEIssues(CVECheckService.java:171)
	at com.microsoft.azure.toolkit.intellij.appmod.javaupgrade.service.JavaUpgradeIssuesDetectionService.getCVEIssues(JavaUpgradeIssuesDetectionService.java:3

Contributor guide

Open the contributing guide

First steps

  1. Read the whole issue, then the project's contributing guide.
  2. Comment on the issue to say you are picking it up — it saves two people doing the same work.
  3. Fork the repository and make your change on a branch.
  4. Open a pull request that references the issue number.

Research direction

Start by tracing CVECheckService.retrieveVulnerabilityData, fetchCves, getCveUpgradeIssues, and batchGetCVEIssues in CVECheckService.java, using the HttpClientImpl.java:970 stack frame as context. Determine how the GitHub Security Advisory API request reaches EOF and identify the project’s existing verification path; the issue does not specify the intended fix or a named test.

Written by the indexing model from the issue text.

Assessment

Tech stack
java
Domain
devtools, security
Issue type
Bug
Difficulty
3/5
Estimated time
1-2 days
Activity status
Quiet
Clarity
Needs clarification
Newbie friendliness
38/100

Get new issues in your inbox

A short digest of beginner-friendly GitHub issues.