Merge pull request #6694 from erik-krogh/owasp-fixes

JS/Java: use the correct cwe tags
This commit is contained in:
Erik Krogh Kristensen
2021-09-15 13:46:35 +02:00
committed by GitHub
18 changed files with 20 additions and 20 deletions

View File

@@ -7,7 +7,7 @@
* @precision high
* @id java/insecure-spring-actuator-config
* @tags security
* external/cwe-016
* external/cwe/cwe-016
*/
/*

View File

@@ -7,7 +7,7 @@
* @precision high
* @id java/jshell-injection
* @tags security
* external/cwe-094
* external/cwe/cwe-094
*/
import java

View File

@@ -8,7 +8,7 @@
* @precision medium
* @id java/unsafe-cert-trust
* @tags security
* external/cwe-273
* external/cwe/cwe-273
*/
import java

View File

@@ -8,7 +8,7 @@
* @precision medium
* @id java/insecure-smtp-ssl
* @tags security
* external/cwe-297
* external/cwe/cwe-297
*/
import java

View File

@@ -8,7 +8,7 @@
* @precision medium
* @id java/insecure-ldaps-endpoint
* @tags security
* external/cwe-297
* external/cwe/cwe-297
*/
import java

View File

@@ -6,7 +6,7 @@
* @precision medium
* @id java/main-method-in-enterprise-bean
* @tags security
* external/cwe-489
* external/cwe/cwe-489
*/
import java

View File

@@ -6,7 +6,7 @@
* @precision medium
* @id java/main-method-in-web-components
* @tags security
* external/cwe-489
* external/cwe/cwe-489
*/
import java

View File

@@ -9,8 +9,8 @@
* @precision medium
* @id java/insecure-basic-auth
* @tags security
* external/cwe-522
* external/cwe-319
* external/cwe/cwe-522
* external/cwe/cwe-319
*/
import java

View File

@@ -6,8 +6,8 @@
* @precision medium
* @id java/insecure-ldap-auth
* @tags security
* external/cwe-522
* external/cwe-319
* external/cwe/cwe-522
* external/cwe/cwe-319
*/
import java

View File

@@ -7,7 +7,7 @@
* @precision medium
* @id java/sensitiveinfo-in-logfile
* @tags security
* external/cwe-532
* external/cwe/cwe-532
*/
import java

View File

@@ -9,7 +9,7 @@
* @precision medium
* @id java/server-directory-listing
* @tags security
* external/cwe-548
* external/cwe/cwe-548
*/
import java

View File

@@ -6,7 +6,7 @@
* @precision medium
* @id java/sensitive-query-with-get
* @tags security
* external/cwe-598
* external/cwe/cwe-598
*/
import java

View File

@@ -9,7 +9,7 @@
* @precision medium
* @id java/uncaught-servlet-exception
* @tags security
* external/cwe-600
* external/cwe/cwe-600
*/
import java

View File

@@ -7,7 +7,7 @@
* @precision high
* @id java/spring-unvalidated-url-redirection
* @tags security
* external/cwe-601
* external/cwe/cwe-601
*/
import java

View File

@@ -6,7 +6,7 @@
* @precision low
* @id java/hash-without-salt
* @tags security
* external/cwe-759
* external/cwe/cwe-759
*/
import java

View File

@@ -8,7 +8,7 @@
* @precision medium
* @id java/sensitive-broadcast
* @tags security
* external/cwe-927
* external/cwe/cwe-927
*/
import java

View File

@@ -8,7 +8,7 @@
* @precision medium
* @id java/incorrect-url-verification
* @tags security
* external/cwe-939
* external/cwe/cwe-939
*/
import java

View File

@@ -7,7 +7,7 @@
* @precision very-high
* @id js/disabling-certificate-validation
* @tags security
* external/cwe-295
* external/cwe/cwe-295
*/
import javascript