diff --git a/python/ql/src/Security/CWE-022/PathInjection.ql b/python/ql/src/Security/CWE-022/PathInjection.ql index 49c9ee74296..5d5561e49c3 100644 --- a/python/ql/src/Security/CWE-022/PathInjection.ql +++ b/python/ql/src/Security/CWE-022/PathInjection.ql @@ -4,7 +4,7 @@ * @kind problem * @problem.severity error * @sub-severity high - * @precision medium + * @precision high * @id py/path-injection * @tags correctness * security diff --git a/python/ql/src/Security/CWE-078/CommandInjection.ql b/python/ql/src/Security/CWE-078/CommandInjection.ql index 22e3860dd38..44e9d56dda3 100755 --- a/python/ql/src/Security/CWE-078/CommandInjection.ql +++ b/python/ql/src/Security/CWE-078/CommandInjection.ql @@ -5,7 +5,7 @@ * @kind problem * @problem.severity error * @sub-severity high - * @precision medium + * @precision high * @id py/command-line-injection * @tags correctness * security diff --git a/python/ql/src/Security/CWE-079/ReflectedXss.ql b/python/ql/src/Security/CWE-079/ReflectedXss.ql index aa6c5552630..dff7657a718 100644 --- a/python/ql/src/Security/CWE-079/ReflectedXss.ql +++ b/python/ql/src/Security/CWE-079/ReflectedXss.ql @@ -5,7 +5,7 @@ * @kind problem * @problem.severity error * @sub-severity high - * @precision medium + * @precision high * @id py/reflective-xss * @tags security * external/cwe/cwe-079 diff --git a/python/ql/src/Security/CWE-089/SqlInjection.ql b/python/ql/src/Security/CWE-089/SqlInjection.ql index 62235dfe9ce..0513bb6ba1f 100755 --- a/python/ql/src/Security/CWE-089/SqlInjection.ql +++ b/python/ql/src/Security/CWE-089/SqlInjection.ql @@ -4,7 +4,7 @@ * malicious SQL code by the user. * @kind problem * @problem.severity error - * @precision medium + * @precision high * @id py/sql-injection * @tags security * external/cwe/cwe-089 diff --git a/python/ql/src/Security/CWE-094/CodeInjection.ql b/python/ql/src/Security/CWE-094/CodeInjection.ql index ef548c83ee2..12b816736eb 100644 --- a/python/ql/src/Security/CWE-094/CodeInjection.ql +++ b/python/ql/src/Security/CWE-094/CodeInjection.ql @@ -5,7 +5,7 @@ * @kind problem * @problem.severity error * @sub-severity high - * @precision medium + * @precision high * @id py/code-injection * @tags security * external/owasp/owasp-a1 diff --git a/python/ql/src/Security/CWE-327/BrokenCryptoAlgorithm.ql b/python/ql/src/Security/CWE-327/BrokenCryptoAlgorithm.ql index 188e43ebb8e..e4dc7855f26 100644 --- a/python/ql/src/Security/CWE-327/BrokenCryptoAlgorithm.ql +++ b/python/ql/src/Security/CWE-327/BrokenCryptoAlgorithm.ql @@ -3,7 +3,7 @@ * @description Using broken or weak cryptographic algorithms can compromise security. * @kind problem * @problem.severity warning - * @precision medium + * @precision high * @id py/weak-cryptographic-algorithm * @tags security * external/cwe/cwe-327 diff --git a/python/ql/src/Security/CWE-502/UnsafeDeserialization.ql b/python/ql/src/Security/CWE-502/UnsafeDeserialization.ql index 48d4ed23983..af7a906691d 100644 --- a/python/ql/src/Security/CWE-502/UnsafeDeserialization.ql +++ b/python/ql/src/Security/CWE-502/UnsafeDeserialization.ql @@ -5,7 +5,7 @@ * @id py/unsafe-deserialization * @problem.severity error * @sub-severity high - * @precision medium + * @precision high * @tags external/cwe/cwe-502 * security * serialization