mirror of
https://github.com/github/codeql.git
synced 2026-04-30 03:05:15 +02:00
Merge pull request #6694 from erik-krogh/owasp-fixes
JS/Java: use the correct cwe tags
This commit is contained in:
@@ -7,7 +7,7 @@
|
||||
* @precision high
|
||||
* @id java/insecure-spring-actuator-config
|
||||
* @tags security
|
||||
* external/cwe-016
|
||||
* external/cwe/cwe-016
|
||||
*/
|
||||
|
||||
/*
|
||||
|
||||
@@ -7,7 +7,7 @@
|
||||
* @precision high
|
||||
* @id java/jshell-injection
|
||||
* @tags security
|
||||
* external/cwe-094
|
||||
* external/cwe/cwe-094
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -8,7 +8,7 @@
|
||||
* @precision medium
|
||||
* @id java/unsafe-cert-trust
|
||||
* @tags security
|
||||
* external/cwe-273
|
||||
* external/cwe/cwe-273
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -8,7 +8,7 @@
|
||||
* @precision medium
|
||||
* @id java/insecure-smtp-ssl
|
||||
* @tags security
|
||||
* external/cwe-297
|
||||
* external/cwe/cwe-297
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -8,7 +8,7 @@
|
||||
* @precision medium
|
||||
* @id java/insecure-ldaps-endpoint
|
||||
* @tags security
|
||||
* external/cwe-297
|
||||
* external/cwe/cwe-297
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -6,7 +6,7 @@
|
||||
* @precision medium
|
||||
* @id java/main-method-in-enterprise-bean
|
||||
* @tags security
|
||||
* external/cwe-489
|
||||
* external/cwe/cwe-489
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -6,7 +6,7 @@
|
||||
* @precision medium
|
||||
* @id java/main-method-in-web-components
|
||||
* @tags security
|
||||
* external/cwe-489
|
||||
* external/cwe/cwe-489
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -9,8 +9,8 @@
|
||||
* @precision medium
|
||||
* @id java/insecure-basic-auth
|
||||
* @tags security
|
||||
* external/cwe-522
|
||||
* external/cwe-319
|
||||
* external/cwe/cwe-522
|
||||
* external/cwe/cwe-319
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -6,8 +6,8 @@
|
||||
* @precision medium
|
||||
* @id java/insecure-ldap-auth
|
||||
* @tags security
|
||||
* external/cwe-522
|
||||
* external/cwe-319
|
||||
* external/cwe/cwe-522
|
||||
* external/cwe/cwe-319
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -7,7 +7,7 @@
|
||||
* @precision medium
|
||||
* @id java/sensitiveinfo-in-logfile
|
||||
* @tags security
|
||||
* external/cwe-532
|
||||
* external/cwe/cwe-532
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -9,7 +9,7 @@
|
||||
* @precision medium
|
||||
* @id java/server-directory-listing
|
||||
* @tags security
|
||||
* external/cwe-548
|
||||
* external/cwe/cwe-548
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -6,7 +6,7 @@
|
||||
* @precision medium
|
||||
* @id java/sensitive-query-with-get
|
||||
* @tags security
|
||||
* external/cwe-598
|
||||
* external/cwe/cwe-598
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -9,7 +9,7 @@
|
||||
* @precision medium
|
||||
* @id java/uncaught-servlet-exception
|
||||
* @tags security
|
||||
* external/cwe-600
|
||||
* external/cwe/cwe-600
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -7,7 +7,7 @@
|
||||
* @precision high
|
||||
* @id java/spring-unvalidated-url-redirection
|
||||
* @tags security
|
||||
* external/cwe-601
|
||||
* external/cwe/cwe-601
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -6,7 +6,7 @@
|
||||
* @precision low
|
||||
* @id java/hash-without-salt
|
||||
* @tags security
|
||||
* external/cwe-759
|
||||
* external/cwe/cwe-759
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -8,7 +8,7 @@
|
||||
* @precision medium
|
||||
* @id java/sensitive-broadcast
|
||||
* @tags security
|
||||
* external/cwe-927
|
||||
* external/cwe/cwe-927
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -8,7 +8,7 @@
|
||||
* @precision medium
|
||||
* @id java/incorrect-url-verification
|
||||
* @tags security
|
||||
* external/cwe-939
|
||||
* external/cwe/cwe-939
|
||||
*/
|
||||
|
||||
import java
|
||||
|
||||
@@ -7,7 +7,7 @@
|
||||
* @precision very-high
|
||||
* @id js/disabling-certificate-validation
|
||||
* @tags security
|
||||
* external/cwe-295
|
||||
* external/cwe/cwe-295
|
||||
*/
|
||||
|
||||
import javascript
|
||||
|
||||
Reference in New Issue
Block a user