From 2f72cc5ca8f57c78463d0b9cec90f7e00a87cb32 Mon Sep 17 00:00:00 2001 From: Ahmed Farid Date: Fri, 22 Jul 2022 03:28:32 +0100 Subject: [PATCH] Update PossibleTimingAttackAgainstHash.ql --- .../Security/CWE-208/PossibleTimingAttackAgainstHash.ql | 2 +- 1 file changed, 1 insertion(+), 1 deletion(-) diff --git a/python/ql/src/experimental/Security/CWE-208/PossibleTimingAttackAgainstHash.ql b/python/ql/src/experimental/Security/CWE-208/PossibleTimingAttackAgainstHash.ql index 1ba71b7ee87..a3cc78342ce 100644 --- a/python/ql/src/experimental/Security/CWE-208/PossibleTimingAttackAgainstHash.ql +++ b/python/ql/src/experimental/Security/CWE-208/PossibleTimingAttackAgainstHash.ql @@ -6,7 +6,7 @@ * A successful attack can result in authentication bypass. * @kind path-problem * @problem.severity error - * @precision high + * @precision medium * @id py/timing-attack-against-Hash * @tags security * external/cwe/cwe-208