Java: update cwe-sink.csv

This commit is contained in:
Jami Cogswell
2023-05-09 14:49:07 -04:00
parent 0a8c0f58b2
commit 36e467e74a

View File

@@ -1,7 +1,7 @@
CWE,Sink identifier,Label
CWE089,sql,SQL injection
CWE022,create-file,Path injection
CWE089,sql-injection,SQL injection
CWE022,path-injection,Path injection
CWE094,bean-validation,Code injection
CWE319,open-url,Cleartext transmission
CWE079,xss,Cross-site scripting
CWE090,ldap,LDAP injection
CWE918,request-forgery,Request Forgery
CWE079,html-injection js-injection,Cross-site scripting
CWE090,ldap-injection,LDAP injection
1 CWE Sink identifier Label
2 CWE‑089 sql sql-injection SQL injection
3 CWE‑022 create-file path-injection Path injection
4 CWE‑094 bean-validation Code injection
5 CWE‑319 CWE‑918 open-url request-forgery Cleartext transmission Request Forgery
6 CWE‑079 xss html-injection js-injection Cross-site scripting
7 CWE‑090 ldap ldap-injection LDAP injection