Add changed framework coverage reports

This commit is contained in:
github-actions[bot]
2024-09-04 00:19:10 +00:00
parent ea0877769e
commit 3eeb79c599
4 changed files with 145 additions and 181 deletions

View File

@@ -1,166 +1,121 @@
package,sink,source,summary,sink:command-injection,sink:credentials-key,sink:jwt,sink:log-injection,sink:path-injection,sink:regex-use[0],sink:regex-use[1],sink:regex-use[c],sink:request-forgery,sink:request-forgery[TCP Addr + Port],sink:url-redirection,sink:url-redirection[0],sink:url-redirection[receiver],sink:xpath-injection,source:remote,summary:taint,summary:value
,,,8,,,,,,,,,,,,,,,,3,5
archive/tar,,,5,,,,,,,,,,,,,,,,5,
archive/zip,,,6,,,,,,,,,,,,,,,,6,
bufio,,,17,,,,,,,,,,,,,,,,17,
bytes,,,43,,,,,,,,,,,,,,,,43,
clevergo.tech/clevergo,1,,,,,,,,,,,,,,,1,,,,
compress/bzip2,,,1,,,,,,,,,,,,,,,,1,
compress/flate,,,4,,,,,,,,,,,,,,,,4,
compress/gzip,,,3,,,,,,,,,,,,,,,,3,
compress/lzw,,,1,,,,,,,,,,,,,,,,1,
compress/zlib,,,4,,,,,,,,,,,,,,,,4,
container/heap,,,5,,,,,,,,,,,,,,,,5,
container/list,,,20,,,,,,,,,,,,,,,,20,
container/ring,,,5,,,,,,,,,,,,,,,,5,
context,,,5,,,,,,,,,,,,,,,,5,
crypto,,,1,,,,,,,,,,,,,,,,1,
crypto/cipher,,,3,,,,,,,,,,,,,,,,3,
crypto/rsa,,,2,,,,,,,,,,,,,,,,2,
crypto/tls,,,3,,,,,,,,,,,,,,,,3,
crypto/x509,,,1,,,,,,,,,,,,,,,,1,
database/sql,,,7,,,,,,,,,,,,,,,,7,
database/sql/driver,,,4,,,,,,,,,,,,,,,,4,
encoding,,,4,,,,,,,,,,,,,,,,4,
encoding/ascii85,,,2,,,,,,,,,,,,,,,,2,
encoding/asn1,,,8,,,,,,,,,,,,,,,,8,
encoding/base32,,,3,,,,,,,,,,,,,,,,3,
encoding/base64,,,3,,,,,,,,,,,,,,,,3,
encoding/binary,,,2,,,,,,,,,,,,,,,,2,
encoding/csv,,,5,,,,,,,,,,,,,,,,5,
encoding/gob,,,7,,,,,,,,,,,,,,,,7,
encoding/hex,,,3,,,,,,,,,,,,,,,,3,
encoding/json,,,14,,,,,,,,,,,,,,,,14,
encoding/pem,,,3,,,,,,,,,,,,,,,,3,
encoding/xml,,,23,,,,,,,,,,,,,,,,23,
errors,,,3,,,,,,,,,,,,,,,,3,
expvar,,,6,,,,,,,,,,,,,,,,6,
fmt,3,,16,,,,3,,,,,,,,,,,,16,
github.com/ChrisTrenkamp/goxpath,3,,,,,,,,,,,,,,,,3,,,
github.com/Sirupsen/logrus,118,,,,,,118,,,,,,,,,,,,,
github.com/antchfx/htmlquery,4,,,,,,,,,,,,,,,,4,,,
github.com/antchfx/jsonquery,4,,,,,,,,,,,,,,,,4,,,
github.com/antchfx/xmlquery,8,,,,,,,,,,,,,,,,8,,,
github.com/antchfx/xpath,4,,,,,,,,,,,,,,,,4,,,
github.com/appleboy/gin-jwt,1,,,,1,,,,,,,,,,,,,,,
github.com/astaxie/beego,16,6,7,,,,11,4,,,,,,1,,,,6,7,
github.com/astaxie/beego/context,2,15,1,,,,,1,,,,,,1,,,,15,1,
github.com/astaxie/beego/logs,22,,,,,,22,,,,,,,,,,,,,
github.com/astaxie/beego/utils,1,,13,,,,1,,,,,,,,,,,,13,
github.com/beego/beego,16,6,7,,,,11,4,,,,,,1,,,,6,7,
github.com/beego/beego/context,2,15,1,,,,,1,,,,,,1,,,,15,1,
github.com/beego/beego/core/logs,22,,,,,,22,,,,,,,,,,,,,
github.com/beego/beego/core/utils,1,,13,,,,1,,,,,,,,,,,,13,
github.com/beego/beego/logs,22,,,,,,22,,,,,,,,,,,,,
github.com/beego/beego/server/web,16,6,7,,,,11,4,,,,,,1,,,,6,7,
github.com/beego/beego/server/web/context,2,15,1,,,,,1,,,,,,1,,,,15,1,
github.com/beego/beego/utils,1,,13,,,,1,,,,,,,,,,,,13,
github.com/clevergo/clevergo,1,,,,,,,,,,,,,,,1,,,,
github.com/codeskyblue/go-sh,4,,,4,,,,,,,,,,,,,,,,
github.com/couchbase/gocb,,,18,,,,,,,,,,,,,,,,18,
github.com/couchbaselabs/gocb,,,18,,,,,,,,,,,,,,,,18,
github.com/crankycoder/xmlpath,2,,,,,,,,,,,,,,,,2,,,
github.com/cristalhq/jwt,1,,,,1,,,,,,,,,,,,,,,
github.com/davecgh/go-spew/spew,9,,,,,,9,,,,,,,,,,,,,
github.com/dgrijalva/jwt-go,3,,9,,2,1,,,,,,,,,,,,,9,
github.com/elazarl/goproxy,2,2,2,,,,2,,,,,,,,,,,2,2,
github.com/emicklei/go-restful,,7,,,,,,,,,,,,,,,,7,,
github.com/evanphx/json-patch,,,12,,,,,,,,,,,,,,,,12,
github.com/form3tech-oss/jwt-go,2,,,,2,,,,,,,,,,,,,,,
github.com/gin-gonic/gin,3,46,2,,,,,3,,,,,,,,,,46,2,
github.com/go-chi/chi,,3,,,,,,,,,,,,,,,,3,,
github.com/go-chi/jwtauth,1,,,,1,,,,,,,,,,,,,,,
github.com/go-jose/go-jose,2,,,,2,,,,,,,,,,,,,,,
github.com/go-jose/go-jose/jwt,1,,4,,,1,,,,,,,,,,,,,4,
github.com/go-kit/kit/auth/jwt,1,,,,1,,,,,,,,,,,,,,,
github.com/go-pg/pg/orm,,,6,,,,,,,,,,,,,,,,6,
github.com/go-xmlpath/xmlpath,2,,,,,,,,,,,,,,,,2,,,
github.com/gobwas/ws,,2,,,,,,,,,,,,,,,,2,,
github.com/gofiber/fiber,5,,,,,,,4,,,,,,,,1,,,,
github.com/gogf/gf-jwt,1,,,,1,,,,,,,,,,,,,,,
github.com/going/toolkit/xmlpath,2,,,,,,,,,,,,,,,,2,,,
github.com/golang-jwt/jwt,3,,11,,2,1,,,,,,,,,,,,,11,
github.com/golang/glog,90,,,,,,90,,,,,,,,,,,,,
github.com/golang/protobuf/proto,,,4,,,,,,,,,,,,,,,,4,
github.com/gorilla/mux,,1,,,,,,,,,,,,,,,,1,,
github.com/gorilla/websocket,,3,,,,,,,,,,,,,,,,3,,
github.com/jbowtie/gokogiri/xml,4,,,,,,,,,,,,,,,,4,,,
github.com/jbowtie/gokogiri/xpath,1,,,,,,,,,,,,,,,,1,,,
github.com/json-iterator/go,,,4,,,,,,,,,,,,,,,,4,
github.com/kataras/iris/context,6,,,,,,,6,,,,,,,,,,,,
github.com/kataras/iris/middleware/jwt,2,,,,2,,,,,,,,,,,,,,,
github.com/kataras/iris/server/web/context,6,,,,,,,6,,,,,,,,,,,,
github.com/kataras/jwt,5,,,,5,,,,,,,,,,,,,,,
github.com/labstack/echo,3,12,2,,,,,2,,,,,,1,,,,12,2,
github.com/lestrrat-go/jwx,1,,,,1,,,,,,,,,,,,,,,
github.com/lestrrat-go/jwx/jwk,1,,,,1,,,,,,,,,,,,,,,
github.com/lestrrat-go/libxml2/parser,3,,,,,,,,,,,,,,,,3,,,
github.com/lestrrat/go-jwx/jwk,1,,,,1,,,,,,,,,,,,,,,
github.com/masterzen/xmlpath,2,,,,,,,,,,,,,,,,2,,,
github.com/moovweb/gokogiri/xml,4,,,,,,,,,,,,,,,,4,,,
github.com/moovweb/gokogiri/xpath,1,,,,,,,,,,,,,,,,1,,,
github.com/ory/fosite/token/jwt,2,,,,2,,,,,,,,,,,,,,,
github.com/revel/revel,2,23,10,,,,,1,,,,,,1,,,,23,10,
github.com/robfig/revel,2,23,10,,,,,1,,,,,,1,,,,23,10,
github.com/santhosh-tekuri/xpathparser,2,,,,,,,,,,,,,,,,2,,,
github.com/sendgrid/sendgrid-go/helpers/mail,,,1,,,,,,,,,,,,,,,,1,
github.com/sirupsen/logrus,118,,,,,,118,,,,,,,,,,,,,
github.com/spf13/afero,34,,,,,,,34,,,,,,,,,,,,
github.com/square/go-jose,2,,,,2,,,,,,,,,,,,,,,
github.com/square/go-jose/jwt,1,,4,,,1,,,,,,,,,,,,,4,
github.com/valyala/fasthttp,35,50,5,,,,,8,,,,17,8,2,,,,50,5,
go.uber.org/zap,33,,11,,,,33,,,,,,,,,,,,11,
golang.org/x/crypto/ssh,4,,,4,,,,,,,,,,,,,,,,
golang.org/x/net/context,,,5,,,,,,,,,,,,,,,,5,
golang.org/x/net/html,,,16,,,,,,,,,,,,,,,,16,
golang.org/x/net/websocket,,2,,,,,,,,,,,,,,,,2,,
google.golang.org/protobuf/internal/encoding/text,,,1,,,,,,,,,,,,,,,,1,
google.golang.org/protobuf/internal/impl,,,2,,,,,,,,,,,,,,,,2,
google.golang.org/protobuf/proto,,,8,,,,,,,,,,,,,,,,8,
google.golang.org/protobuf/reflect/protoreflect,,,1,,,,,,,,,,,,,,,,1,
gopkg.in/couchbase/gocb,,,18,,,,,,,,,,,,,,,,18,
gopkg.in/glog,90,,,,,,90,,,,,,,,,,,,,
gopkg.in/go-jose/go-jose,2,,,,2,,,,,,,,,,,,,,,
gopkg.in/go-jose/go-jose/jwt,1,,4,,,1,,,,,,,,,,,,,4,
gopkg.in/go-xmlpath/xmlpath,2,,,,,,,,,,,,,,,,2,,,
gopkg.in/macaron,1,12,1,,,,,,,,,,,,,1,,12,1,
gopkg.in/square/go-jose,2,,,,2,,,,,,,,,,,,,,,
gopkg.in/square/go-jose/jwt,1,,4,,,1,,,,,,,,,,,,,4,
gopkg.in/xmlpath,2,,,,,,,,,,,,,,,,2,,,
gopkg.in/yaml,,,9,,,,,,,,,,,,,,,,9,
html,,,2,,,,,,,,,,,,,,,,2,
html/template,,,6,,,,,,,,,,,,,,,,6,
io,,,19,,,,,,,,,,,,,,,,19,
io/fs,,,12,,,,,,,,,,,,,,,,12,
io/ioutil,5,,2,,,,,5,,,,,,,,,,,2,
k8s.io/api/core,,,10,,,,,,,,,,,,,,,,10,
k8s.io/apimachinery/pkg/runtime,,,47,,,,,,,,,,,,,,,,47,
k8s.io/klog,90,,,,,,90,,,,,,,,,,,,,
launchpad.net/xmlpath,2,,,,,,,,,,,,,,,,2,,,
log,20,,3,,,,20,,,,,,,,,,,,3,
math/big,,,1,,,,,,,,,,,,,,,,1,
mime,,,5,,,,,,,,,,,,,,,,5,
mime/multipart,,,8,,,,,,,,,,,,,,,,8,
mime/quotedprintable,,,1,,,,,,,,,,,,,,,,1,
net,,,20,,,,,,,,,,,,,,,,20,
net/http,2,16,22,,,,,1,,,,,,,1,,,16,22,
net/http/httputil,,,10,,,,,,,,,,,,,,,,10,
net/mail,,,6,,,,,,,,,,,,,,,,6,
net/textproto,,,19,,,,,,,,,,,,,,,,19,
net/url,,,23,,,,,,,,,,,,,,,,23,
nhooyr.io/websocket,,2,,,,,,,,,,,,,,,,2,,
os,27,,4,1,,,,26,,,,,,,,,,,4,
os/exec,2,,,2,,,,,,,,,,,,,,,,
path,,,5,,,,,,,,,,,,,,,,5,
path/filepath,,,13,,,,,,,,,,,,,,,,13,
reflect,,,37,,,,,,,,,,,,,,,,37,
regexp,10,,20,,,,,,3,3,4,,,,,,,,20,
sort,,,1,,,,,,,,,,,,,,,,1,
strconv,,,9,,,,,,,,,,,,,,,,9,
strings,,,34,,,,,,,,,,,,,,,,34,
sync,,,10,,,,,,,,,,,,,,,,10,
sync/atomic,,,24,,,,,,,,,,,,,,,,24,
syscall,5,,8,5,,,,,,,,,,,,,,,8,
text/scanner,,,3,,,,,,,,,,,,,,,,3,
text/tabwriter,,,1,,,,,,,,,,,,,,,,1,
text/template,,,6,,,,,,,,,,,,,,,,6,
package,sink,source,summary,sink:command-injection,sink:credentials-key,sink:jwt,sink:path-injection,sink:regex-use[0],sink:regex-use[1],sink:regex-use[c],sink:request-forgery,sink:request-forgery[TCP Addr + Port],sink:url-redirection,sink:url-redirection[0],sink:url-redirection[receiver],sink:xpath-injection,source:environment,source:file,source:remote,summary:taint,summary:value
,,,8,,,,,,,,,,,,,,,,,3,5
archive/tar,,,5,,,,,,,,,,,,,,,,,5,
archive/zip,,,6,,,,,,,,,,,,,,,,,6,
bufio,,,17,,,,,,,,,,,,,,,,,17,
bytes,,,43,,,,,,,,,,,,,,,,,43,
clevergo.tech/clevergo,1,,,,,,,,,,,,,,1,,,,,,
compress/bzip2,,,1,,,,,,,,,,,,,,,,,1,
compress/flate,,,4,,,,,,,,,,,,,,,,,4,
compress/gzip,,,3,,,,,,,,,,,,,,,,,3,
compress/lzw,,,1,,,,,,,,,,,,,,,,,1,
compress/zlib,,,4,,,,,,,,,,,,,,,,,4,
container/heap,,,5,,,,,,,,,,,,,,,,,5,
container/list,,,20,,,,,,,,,,,,,,,,,20,
container/ring,,,5,,,,,,,,,,,,,,,,,5,
context,,,5,,,,,,,,,,,,,,,,,5,
crypto,,,10,,,,,,,,,,,,,,,,,10,
database/sql,,,11,,,,,,,,,,,,,,,,,11,
encoding,,,77,,,,,,,,,,,,,,,,,77,
errors,,,3,,,,,,,,,,,,,,,,,3,
expvar,,,6,,,,,,,,,,,,,,,,,6,
fmt,,,16,,,,,,,,,,,,,,,,,16,
github.com/ChrisTrenkamp/goxpath,3,,,,,,,,,,,,,,,3,,,,,
github.com/antchfx/htmlquery,4,,,,,,,,,,,,,,,4,,,,,
github.com/antchfx/jsonquery,4,,,,,,,,,,,,,,,4,,,,,
github.com/antchfx/xmlquery,8,,,,,,,,,,,,,,,8,,,,,
github.com/antchfx/xpath,4,,,,,,,,,,,,,,,4,,,,,
github.com/appleboy/gin-jwt,1,,,,1,,,,,,,,,,,,,,,,
github.com/astaxie/beego,7,21,21,,,,5,,,,,,2,,,,,,21,21,
github.com/beego/beego,14,42,42,,,,10,,,,,,4,,,,,,42,42,
github.com/caarlos0/env,,5,2,,,,,,,,,,,,,,5,,,1,1
github.com/clevergo/clevergo,1,,,,,,,,,,,,,,1,,,,,,
github.com/codeskyblue/go-sh,4,,,4,,,,,,,,,,,,,,,,,
github.com/couchbase/gocb,,,18,,,,,,,,,,,,,,,,,18,
github.com/couchbaselabs/gocb,,,18,,,,,,,,,,,,,,,,,18,
github.com/crankycoder/xmlpath,2,,,,,,,,,,,,,,,2,,,,,
github.com/cristalhq/jwt,1,,,,1,,,,,,,,,,,,,,,,
github.com/dgrijalva/jwt-go,3,,9,,2,1,,,,,,,,,,,,,,9,
github.com/elazarl/goproxy,,2,2,,,,,,,,,,,,,,,,2,2,
github.com/emicklei/go-restful,,7,,,,,,,,,,,,,,,,,7,,
github.com/evanphx/json-patch,,,12,,,,,,,,,,,,,,,,,12,
github.com/form3tech-oss/jwt-go,2,,,,2,,,,,,,,,,,,,,,,
github.com/gin-gonic/gin,3,46,2,,,,3,,,,,,,,,,,,46,2,
github.com/go-chi/chi,,3,,,,,,,,,,,,,,,,,3,,
github.com/go-chi/jwtauth,1,,,,1,,,,,,,,,,,,,,,,
github.com/go-jose/go-jose,3,,4,,2,1,,,,,,,,,,,,,,4,
github.com/go-kit/kit/auth/jwt,1,,,,1,,,,,,,,,,,,,,,,
github.com/go-pg/pg/orm,,,6,,,,,,,,,,,,,,,,,6,
github.com/go-xmlpath/xmlpath,2,,,,,,,,,,,,,,,2,,,,,
github.com/gobuffalo/envy,,7,,,,,,,,,,,,,,,7,,,,
github.com/gobwas/ws,,2,,,,,,,,,,,,,,,,,2,,
github.com/gofiber/fiber,5,,,,,,4,,,,,,,,1,,,,,,
github.com/gogf/gf-jwt,1,,,,1,,,,,,,,,,,,,,,,
github.com/going/toolkit/xmlpath,2,,,,,,,,,,,,,,,2,,,,,
github.com/golang-jwt/jwt,3,,11,,2,1,,,,,,,,,,,,,,11,
github.com/golang/protobuf/proto,,,4,,,,,,,,,,,,,,,,,4,
github.com/gorilla/mux,,1,,,,,,,,,,,,,,,,,1,,
github.com/gorilla/websocket,,3,,,,,,,,,,,,,,,,,3,,
github.com/hashicorp/go-envparse,,1,,,,,,,,,,,,,,,1,,,,
github.com/jbowtie/gokogiri/xml,4,,,,,,,,,,,,,,,4,,,,,
github.com/jbowtie/gokogiri/xpath,1,,,,,,,,,,,,,,,1,,,,,
github.com/joho/godotenv,,4,,,,,,,,,,,,,,,4,,,,
github.com/json-iterator/go,,,4,,,,,,,,,,,,,,,,,4,
github.com/kataras/iris/context,6,,,,,,6,,,,,,,,,,,,,,
github.com/kataras/iris/middleware/jwt,2,,,,2,,,,,,,,,,,,,,,,
github.com/kataras/iris/server/web/context,6,,,,,,6,,,,,,,,,,,,,,
github.com/kataras/jwt,5,,,,5,,,,,,,,,,,,,,,,
github.com/kelseyhightower/envconfig,,6,,,,,,,,,,,,,,,6,,,,
github.com/labstack/echo,3,12,2,,,,2,,,,,,1,,,,,,12,2,
github.com/lestrrat-go/jwx,2,,,,2,,,,,,,,,,,,,,,,
github.com/lestrrat-go/libxml2/parser,3,,,,,,,,,,,,,,,3,,,,,
github.com/lestrrat/go-jwx/jwk,1,,,,1,,,,,,,,,,,,,,,,
github.com/masterzen/xmlpath,2,,,,,,,,,,,,,,,2,,,,,
github.com/moovweb/gokogiri/xml,4,,,,,,,,,,,,,,,4,,,,,
github.com/moovweb/gokogiri/xpath,1,,,,,,,,,,,,,,,1,,,,,
github.com/ory/fosite/token/jwt,2,,,,2,,,,,,,,,,,,,,,,
github.com/revel/revel,2,23,10,,,,1,,,,,,1,,,,,,23,10,
github.com/robfig/revel,2,23,10,,,,1,,,,,,1,,,,,,23,10,
github.com/santhosh-tekuri/xpathparser,2,,,,,,,,,,,,,,,2,,,,,
github.com/sendgrid/sendgrid-go/helpers/mail,,,1,,,,,,,,,,,,,,,,,1,
github.com/spf13/afero,34,,,,,,34,,,,,,,,,,,,,,
github.com/square/go-jose,3,,4,,2,1,,,,,,,,,,,,,,4,
github.com/valyala/fasthttp,35,50,5,,,,8,,,,17,8,2,,,,,,50,5,
go.uber.org/zap,,,11,,,,,,,,,,,,,,,,,11,
golang.org/x/crypto/ssh,4,,,4,,,,,,,,,,,,,,,,,
golang.org/x/net/context,,,5,,,,,,,,,,,,,,,,,5,
golang.org/x/net/html,,,16,,,,,,,,,,,,,,,,,16,
golang.org/x/net/websocket,,2,,,,,,,,,,,,,,,,,2,,
google.golang.org/protobuf/internal/encoding/text,,,1,,,,,,,,,,,,,,,,,1,
google.golang.org/protobuf/internal/impl,,,2,,,,,,,,,,,,,,,,,2,
google.golang.org/protobuf/proto,,,8,,,,,,,,,,,,,,,,,8,
google.golang.org/protobuf/reflect/protoreflect,,,1,,,,,,,,,,,,,,,,,1,
gopkg.in/couchbase/gocb,,,18,,,,,,,,,,,,,,,,,18,
gopkg.in/go-jose/go-jose,3,,4,,2,1,,,,,,,,,,,,,,4,
gopkg.in/go-xmlpath/xmlpath,2,,,,,,,,,,,,,,,2,,,,,
gopkg.in/macaron,1,12,1,,,,,,,,,,,,1,,,,12,1,
gopkg.in/square/go-jose,3,,4,,2,1,,,,,,,,,,,,,,4,
gopkg.in/xmlpath,2,,,,,,,,,,,,,,,2,,,,,
gopkg.in/yaml,,,9,,,,,,,,,,,,,,,,,9,
html,,,8,,,,,,,,,,,,,,,,,8,
io,5,4,34,,,,5,,,,,,,,,,,4,,34,
k8s.io/api/core,,,10,,,,,,,,,,,,,,,,,10,
k8s.io/apimachinery/pkg/runtime,,,47,,,,,,,,,,,,,,,,,47,
launchpad.net/xmlpath,2,,,,,,,,,,,,,,,2,,,,,
log,,,3,,,,,,,,,,,,,,,,,3,
math/big,,,1,,,,,,,,,,,,,,,,,1,
mime,,,14,,,,,,,,,,,,,,,,,14,
net,2,16,100,,,,1,,,,,,,1,,,,,16,100,
nhooyr.io/websocket,,2,,,,,,,,,,,,,,,,,2,,
os,29,10,6,3,,,26,,,,,,,,,,7,3,,6,
path,,,18,,,,,,,,,,,,,,,,,18,
reflect,,,37,,,,,,,,,,,,,,,,,37,
regexp,10,,20,,,,,3,3,4,,,,,,,,,,20,
sort,,,1,,,,,,,,,,,,,,,,,1,
strconv,,,9,,,,,,,,,,,,,,,,,9,
strings,,,34,,,,,,,,,,,,,,,,,34,
sync,,,34,,,,,,,,,,,,,,,,,34,
syscall,5,2,8,5,,,,,,,,,,,,,2,,,8,
text/scanner,,,3,,,,,,,,,,,,,,,,,3,
text/tabwriter,,,1,,,,,,,,,,,,,,,,,1,
text/template,,,6,,,,,,,,,,,,,,,,,6,
1 package sink source summary sink:command-injection sink:credentials-key sink:jwt sink:path-injection sink:regex-use[0] sink:regex-use[1] sink:regex-use[c] sink:request-forgery sink:request-forgery[TCP Addr + Port] sink:url-redirection sink:url-redirection[0] sink:url-redirection[receiver] sink:xpath-injection sink:log-injection source:environment source:file source:remote summary:taint summary:value
2 8 3 5
3 archive/tar 5 5
4 archive/zip 6 6
5 bufio 17 17
6 bytes 43 43
7 clevergo.tech/clevergo 1 1
8 compress/bzip2 1 1
9 compress/flate 4 4
10 compress/gzip 3 3
11 compress/lzw 1 1
12 compress/zlib 4 4
13 container/heap 5 5
14 container/list 20 20
15 container/ring 5 5
16 context 5 5
17 crypto 1 10 1 10
18 crypto/cipher database/sql 3 11 3 11
19 crypto/rsa encoding 2 77 2 77
20 crypto/tls errors 3 3
21 crypto/x509 expvar 1 6 1 6
22 database/sql fmt 7 16 7 16
23 database/sql/driver github.com/ChrisTrenkamp/goxpath 3 4 3 4
24 encoding github.com/antchfx/htmlquery 4 4 4 4
25 encoding/ascii85 github.com/antchfx/jsonquery 4 2 4 2
26 encoding/asn1 github.com/antchfx/xmlquery 8 8 8 8
27 encoding/base32 github.com/antchfx/xpath 4 3 4 3
28 encoding/base64 github.com/appleboy/gin-jwt 1 3 1 3
29 encoding/binary github.com/astaxie/beego 7 21 2 21 5 2 21 2 21
30 encoding/csv github.com/beego/beego 14 42 5 42 10 4 42 5 42
31 encoding/gob github.com/caarlos0/env 5 7 2 5 7 1 1
32 encoding/hex github.com/clevergo/clevergo 1 3 1 3
33 encoding/json github.com/codeskyblue/go-sh 4 14 4 14
34 encoding/pem github.com/couchbase/gocb 3 18 3 18
35 encoding/xml github.com/couchbaselabs/gocb 23 18 23 18
36 errors github.com/crankycoder/xmlpath 2 3 2 3
37 expvar github.com/cristalhq/jwt 1 6 1 6
38 fmt github.com/dgrijalva/jwt-go 3 16 9 2 1 3 16 9
39 github.com/ChrisTrenkamp/goxpath github.com/elazarl/goproxy 3 2 2 3 2 2
40 github.com/Sirupsen/logrus github.com/emicklei/go-restful 118 7 118 7
41 github.com/antchfx/htmlquery github.com/evanphx/json-patch 4 12 4 12
42 github.com/antchfx/jsonquery github.com/form3tech-oss/jwt-go 4 2 2 4
43 github.com/antchfx/xmlquery github.com/gin-gonic/gin 8 3 46 2 3 8 46 2
44 github.com/antchfx/xpath github.com/go-chi/chi 4 3 4 3
45 github.com/appleboy/gin-jwt github.com/go-chi/jwtauth 1 1
46 github.com/astaxie/beego github.com/go-jose/go-jose 16 3 6 7 4 2 1 4 1 11 6 7 4
47 github.com/astaxie/beego/context github.com/go-kit/kit/auth/jwt 2 1 15 1 1 1 1 15 1
48 github.com/astaxie/beego/logs github.com/go-pg/pg/orm 22 6 22 6
49 github.com/astaxie/beego/utils github.com/go-xmlpath/xmlpath 1 2 13 2 1 13
50 github.com/beego/beego github.com/gobuffalo/envy 16 6 7 7 4 1 11 7 6 7
51 github.com/beego/beego/context github.com/gobwas/ws 2 15 2 1 1 1 15 2 1
52 github.com/beego/beego/core/logs github.com/gofiber/fiber 22 5 4 1 22
53 github.com/beego/beego/core/utils github.com/gogf/gf-jwt 1 13 1 1 13
54 github.com/beego/beego/logs github.com/going/toolkit/xmlpath 22 2 2 22
55 github.com/beego/beego/server/web github.com/golang-jwt/jwt 16 3 6 7 11 2 1 4 1 11 6 7 11
56 github.com/beego/beego/server/web/context github.com/golang/protobuf/proto 2 15 1 4 1 1 15 1 4
57 github.com/beego/beego/utils github.com/gorilla/mux 1 1 13 1 1 13
58 github.com/clevergo/clevergo github.com/gorilla/websocket 1 3 1 3
59 github.com/codeskyblue/go-sh github.com/hashicorp/go-envparse 4 1 4 1
60 github.com/couchbase/gocb github.com/jbowtie/gokogiri/xml 4 18 4 18
61 github.com/couchbaselabs/gocb github.com/jbowtie/gokogiri/xpath 1 18 1 18
62 github.com/crankycoder/xmlpath github.com/joho/godotenv 2 4 2 4
63 github.com/cristalhq/jwt github.com/json-iterator/go 1 4 1 4
64 github.com/davecgh/go-spew/spew github.com/kataras/iris/context 9 6 6 9
65 github.com/dgrijalva/jwt-go github.com/kataras/iris/middleware/jwt 3 2 9 2 1 9
66 github.com/elazarl/goproxy github.com/kataras/iris/server/web/context 2 6 2 2 6 2 2 2
67 github.com/emicklei/go-restful github.com/kataras/jwt 5 7 5 7
68 github.com/evanphx/json-patch github.com/kelseyhightower/envconfig 6 12 6 12
69 github.com/form3tech-oss/jwt-go github.com/labstack/echo 2 3 12 2 2 2 1 12 2
70 github.com/gin-gonic/gin github.com/lestrrat-go/jwx 3 2 46 2 2 3 46 2
71 github.com/go-chi/chi github.com/lestrrat-go/libxml2/parser 3 3 3 3
72 github.com/go-chi/jwtauth github.com/lestrrat/go-jwx/jwk 1 1
73 github.com/go-jose/go-jose github.com/masterzen/xmlpath 2 2 2
74 github.com/go-jose/go-jose/jwt github.com/moovweb/gokogiri/xml 1 4 4 1 4 4
75 github.com/go-kit/kit/auth/jwt github.com/moovweb/gokogiri/xpath 1 1 1
76 github.com/go-pg/pg/orm github.com/ory/fosite/token/jwt 2 6 2 6
77 github.com/go-xmlpath/xmlpath github.com/revel/revel 2 23 10 1 1 2 23 10
78 github.com/gobwas/ws github.com/robfig/revel 2 2 23 10 1 1 2 23 10
79 github.com/gofiber/fiber github.com/santhosh-tekuri/xpathparser 5 2 4 1 2
80 github.com/gogf/gf-jwt github.com/sendgrid/sendgrid-go/helpers/mail 1 1 1 1
81 github.com/going/toolkit/xmlpath github.com/spf13/afero 2 34 34 2
82 github.com/golang-jwt/jwt github.com/square/go-jose 3 11 4 2 1 11 4
83 github.com/golang/glog github.com/valyala/fasthttp 90 35 50 5 8 17 8 2 90 50 5
84 github.com/golang/protobuf/proto go.uber.org/zap 4 11 4 11
85 github.com/gorilla/mux golang.org/x/crypto/ssh 4 1 4 1
86 github.com/gorilla/websocket golang.org/x/net/context 3 5 3 5
87 github.com/jbowtie/gokogiri/xml golang.org/x/net/html 4 16 4 16
88 github.com/jbowtie/gokogiri/xpath golang.org/x/net/websocket 1 2 1 2
89 github.com/json-iterator/go google.golang.org/protobuf/internal/encoding/text 4 1 4 1
90 github.com/kataras/iris/context google.golang.org/protobuf/internal/impl 6 2 6 2
91 github.com/kataras/iris/middleware/jwt google.golang.org/protobuf/proto 2 8 2 8
92 github.com/kataras/iris/server/web/context google.golang.org/protobuf/reflect/protoreflect 6 1 6 1
93 github.com/kataras/jwt gopkg.in/couchbase/gocb 5 18 5 18
94 github.com/labstack/echo gopkg.in/go-jose/go-jose 3 12 2 4 2 1 2 1 12 2 4
95 github.com/lestrrat-go/jwx gopkg.in/go-xmlpath/xmlpath 1 2 1 2
96 github.com/lestrrat-go/jwx/jwk gopkg.in/macaron 1 12 1 1 1 12 1
97 github.com/lestrrat-go/libxml2/parser gopkg.in/square/go-jose 3 4 2 1 3 4
98 github.com/lestrrat/go-jwx/jwk gopkg.in/xmlpath 1 2 1 2
99 github.com/masterzen/xmlpath gopkg.in/yaml 2 9 2 9
100 github.com/moovweb/gokogiri/xml html 4 8 4 8
101 github.com/moovweb/gokogiri/xpath io 1 5 4 34 5 1 4 34
102 github.com/ory/fosite/token/jwt k8s.io/api/core 2 10 2 10
103 github.com/revel/revel k8s.io/apimachinery/pkg/runtime 2 23 10 47 1 1 23 10 47
104 github.com/robfig/revel launchpad.net/xmlpath 2 23 10 1 1 2 23 10
105 github.com/santhosh-tekuri/xpathparser log 2 3 2 3
106 github.com/sendgrid/sendgrid-go/helpers/mail math/big 1 1
107 github.com/sirupsen/logrus mime 118 14 118 14
108 github.com/spf13/afero net 34 2 16 100 34 1 1 16 100
109 github.com/square/go-jose nhooyr.io/websocket 2 2 2 2
110 github.com/square/go-jose/jwt os 1 29 10 4 6 3 1 26 7 3 4 6
111 github.com/valyala/fasthttp path 35 50 5 18 8 17 8 2 50 5 18
112 go.uber.org/zap reflect 33 11 37 33 11 37
113 golang.org/x/crypto/ssh regexp 4 10 20 4 3 3 4 20
114 golang.org/x/net/context sort 5 1 5 1
115 golang.org/x/net/html strconv 16 9 16 9
116 golang.org/x/net/websocket strings 2 34 2 34
117 google.golang.org/protobuf/internal/encoding/text sync 1 34 1 34
118 google.golang.org/protobuf/internal/impl syscall 5 2 2 8 5 2 2 8
119 google.golang.org/protobuf/proto text/scanner 8 3 8 3
120 google.golang.org/protobuf/reflect/protoreflect text/tabwriter 1 1
121 gopkg.in/couchbase/gocb text/template 18 6 18 6
gopkg.in/glog 90 90
gopkg.in/go-jose/go-jose 2 2
gopkg.in/go-jose/go-jose/jwt 1 4 1 4
gopkg.in/go-xmlpath/xmlpath 2 2
gopkg.in/macaron 1 12 1 1 12 1
gopkg.in/square/go-jose 2 2
gopkg.in/square/go-jose/jwt 1 4 1 4
gopkg.in/xmlpath 2 2
gopkg.in/yaml 9 9
html 2 2
html/template 6 6
io 19 19
io/fs 12 12
io/ioutil 5 2 5 2
k8s.io/api/core 10 10
k8s.io/apimachinery/pkg/runtime 47 47
k8s.io/klog 90 90
launchpad.net/xmlpath 2 2
log 20 3 20 3
math/big 1 1
mime 5 5
mime/multipart 8 8
mime/quotedprintable 1 1
net 20 20
net/http 2 16 22 1 1 16 22
net/http/httputil 10 10
net/mail 6 6
net/textproto 19 19
net/url 23 23
nhooyr.io/websocket 2 2
os 27 4 1 26 4
os/exec 2 2
path 5 5
path/filepath 13 13
reflect 37 37
regexp 10 20 3 3 4 20
sort 1 1
strconv 9 9
strings 34 34
sync 10 10
sync/atomic 24 24
syscall 5 8 5 8
text/scanner 3 3
text/tabwriter 1 1
text/template 6 6

View File

@@ -7,31 +7,39 @@ Go framework & library support
:widths: auto
Framework / library,Package,Flow sources,Taint & value steps,Sinks (total)
`Afero <https://github.com/spf13/afero>`_,``github.com/spf13/afero*``,,,34
`CleverGo <https://github.com/clevergo/clevergo>`_,"``clevergo.tech/clevergo*``, ``github.com/clevergo/clevergo*``",,,2
`Couchbase official client(gocb) <https://github.com/couchbase/gocb>`_,"``github.com/couchbase/gocb*``, ``gopkg.in/couchbase/gocb*``",,36,
`Couchbase unofficial client <http://www.github.com/couchbase/go-couchbase>`_,``github.com/couchbaselabs/gocb*``,,18,
`Echo <https://echo.labstack.com/>`_,``github.com/labstack/echo*``,12,2,3
`Fiber <https://github.com/gofiber/fiber>`_,``github.com/gofiber/fiber*``,,,5
`Fosite <https://github.com/ory/fosite>`_,``github.com/ory/fosite*``,,,2
`Gin <https://github.com/gin-gonic/gin>`_,``github.com/gin-gonic/gin*``,46,2,3
`Glog <https://github.com/golang/glog>`_,"``github.com/golang/glog*``, ``gopkg.in/glog*``, ``k8s.io/klog*``",,,
`Go JOSE <https://github.com/go-jose/go-jose>`_,"``github.com/go-jose/go-jose*``, ``github.com/square/go-jose*``, ``gopkg.in/square/go-jose*``, ``gopkg.in/go-jose/go-jose*``",,16,12
`Go kit <https://gokit.io/>`_,``github.com/go-kit/kit*``,,,1
`Go-spew <https://github.com/davecgh/go-spew>`_,``github.com/davecgh/go-spew/spew*``,,,
`Gokogiri <https://github.com/moovweb/gokogiri>`_,"``github.com/jbowtie/gokogiri*``, ``github.com/moovweb/gokogiri*``",,,10
`Iris <https://www.iris-go.com/>`_,``github.com/kataras/iris*``,,,14
`Kubernetes <https://kubernetes.io/>`_,"``k8s.io/api*``, ``k8s.io/apimachinery*``",,57,
`Logrus <https://github.com/sirupsen/logrus>`_,"``github.com/Sirupsen/logrus*``, ``github.com/sirupsen/logrus*``",,,
`Macaron <https://gopkg.in/macaron.v1>`_,``gopkg.in/macaron*``,12,1,1
`Revel <http://revel.github.io/>`_,"``github.com/revel/revel*``, ``github.com/robfig/revel*``",46,20,4
`SendGrid <https://github.com/sendgrid/sendgrid-go>`_,``github.com/sendgrid/sendgrid-go*``,,1,
`Standard library <https://pkg.go.dev/std>`_,"````, ``archive/*``, ``bufio``, ``bytes``, ``cmp``, ``compress/*``, ``container/*``, ``context``, ``crypto``, ``crypto/*``, ``database/*``, ``debug/*``, ``embed``, ``encoding``, ``encoding/*``, ``errors``, ``expvar``, ``flag``, ``fmt``, ``go/*``, ``hash``, ``hash/*``, ``html``, ``html/*``, ``image``, ``image/*``, ``index/*``, ``io``, ``io/*``, ``log``, ``log/*``, ``maps``, ``math``, ``math/*``, ``mime``, ``mime/*``, ``net``, ``net/*``, ``os``, ``os/*``, ``path``, ``path/*``, ``plugin``, ``reflect``, ``reflect/*``, ``regexp``, ``regexp/*``, ``slices``, ``sort``, ``strconv``, ``strings``, ``sync``, ``sync/*``, ``syscall``, ``syscall/*``, ``testing``, ``testing/*``, ``text/*``, ``time``, ``time/*``, ``unicode``, ``unicode/*``, ``unsafe``",16,584,74
`Standard library <https://pkg.go.dev/std>`_,"````, ``archive/*``, ``bufio``, ``bytes``, ``cmp``, ``compress/*``, ``container/*``, ``context``, ``crypto``, ``crypto/*``, ``database/*``, ``debug/*``, ``embed``, ``encoding``, ``encoding/*``, ``errors``, ``expvar``, ``flag``, ``fmt``, ``go/*``, ``hash``, ``hash/*``, ``html``, ``html/*``, ``image``, ``image/*``, ``index/*``, ``io``, ``io/*``, ``log``, ``log/*``, ``maps``, ``math``, ``math/*``, ``mime``, ``mime/*``, ``net``, ``net/*``, ``os``, ``os/*``, ``path``, ``path/*``, ``plugin``, ``reflect``, ``reflect/*``, ``regexp``, ``regexp/*``, ``slices``, ``sort``, ``strconv``, ``strings``, ``sync``, ``sync/*``, ``syscall``, ``syscall/*``, ``testing``, ``testing/*``, ``text/*``, ``time``, ``time/*``, ``unicode``, ``unicode/*``, ``unsafe``",32,587,51
`XPath <https://github.com/antchfx/xpath>`_,``github.com/antchfx/xpath*``,,,4
`appleboy/gin-jwt <https://github.com/appleboy/gin-jwt>`_,``github.com/appleboy/gin-jwt*``,,,1
`beego <https://beego.me/>`_,"``github.com/astaxie/beego*``, ``github.com/beego/beego*``",63,63,123
`beego <https://beego.me/>`_,"``github.com/astaxie/beego*``, ``github.com/beego/beego*``",63,63,21
`chi <https://go-chi.io/>`_,``github.com/go-chi/chi*``,3,,
`cristalhq/jwt <https://github.com/cristalhq/jwt>`_,``github.com/cristalhq/jwt*``,,,1
`fasthttp <https://github.com/valyala/fasthttp>`_,``github.com/valyala/fasthttp*``,50,5,35
`gf-jwt <https://github.com/gogf/gf-jwt>`_,``github.com/gogf/gf-jwt*``,,,1
`go-pg <https://pg.uptrace.dev/>`_,``github.com/go-pg/pg*``,,6,
`go-restful <https://github.com/emicklei/go-restful>`_,``github.com/emicklei/go-restful*``,7,,
`go-sh <https://github.com/codeskyblue/go-sh>`_,``github.com/codeskyblue/go-sh*``,,,4
`golang.org/x/crypto/ssh <https://pkg.go.dev/golang.org/x/crypto/ssh>`_,``golang.org/x/crypto/ssh*``,,,4
`golang.org/x/net <https://pkg.go.dev/golang.org/x/net>`_,``golang.org/x/net*``,2,21,
`goproxy <https://github.com/elazarl/goproxy>`_,``github.com/elazarl/goproxy*``,2,2,2
`goproxy <https://github.com/elazarl/goproxy>`_,``github.com/elazarl/goproxy*``,2,2,
`gorilla/mux <https://github.com/gorilla/mux>`_,``github.com/gorilla/mux*``,1,,
`gorilla/websocket <https://github.com/gorilla/websocket>`_,``github.com/gorilla/websocket*``,3,,
`goxpath <https://github.com/ChrisTrenkamp/goxpath/wiki>`_,``github.com/ChrisTrenkamp/goxpath*``,,,3
@@ -51,7 +59,7 @@ Go framework & library support
`xmlquery <https://github.com/antchfx/xmlquery>`_,``github.com/antchfx/xmlquery*``,,,8
`xpathparser <https://github.com/santhosh-tekuri/xpathparser>`_,``github.com/santhosh-tekuri/xpathparser*``,,,2
`yaml <https://gopkg.in/yaml.v3>`_,``gopkg.in/yaml*``,,9,
`zap <https://go.uber.org/zap>`_,``go.uber.org/zap*``,,11,33
Others,"``clevergo.tech/clevergo``, ``github.com/Sirupsen/logrus``, ``github.com/clevergo/clevergo``, ``github.com/codeskyblue/go-sh``, ``github.com/davecgh/go-spew/spew``, ``github.com/gofiber/fiber``, ``github.com/golang/glog``, ``github.com/sirupsen/logrus``, ``github.com/spf13/afero``, ``golang.org/x/crypto/ssh``, ``gopkg.in/glog``, ``k8s.io/klog``",,,564
Totals,,267,906,943
`zap <https://go.uber.org/zap>`_,``go.uber.org/zap*``,,11,
Others,"``github.com/caarlos0/env``, ``github.com/gobuffalo/envy``, ``github.com/hashicorp/go-envparse``, ``github.com/joho/godotenv``, ``github.com/kelseyhightower/envconfig``",23,2,
Totals,,306,911,268