-
Notifications
You must be signed in to change notification settings - Fork 0
Issues
is:issue state:open
is:issue state:open
Issue creation is restricted in this repository
Search results
[Security] Critical XSS vulnerabilities via eval() and innerHTML in demo code
criticalCritical severity issuesCritical severity issuessecuritySecurity-related issues and vulnerabilitiesSecurity-related issues and vulnerabilitiesvulnerabilityIndicates a security vulnerabilityIndicates a security vulnerabilityStatus: Open.#13 In timothywarner-org/github-security-testbed;[Security] Terraform state may contain sensitive data without encryption
infrastructureInfrastructure-related issuesInfrastructure-related issuesmedium-priorityMedium priority issuesMedium priority issuessecuritySecurity-related issues and vulnerabilitiesSecurity-related issues and vulnerabilitiesStatus: Open.#12 In timothywarner-org/github-security-testbed;[Security] IDOR vulnerability in document API allows unauthorized access
high-priorityHigh priority issuesHigh priority issuessecuritySecurity-related issues and vulnerabilitiesSecurity-related issues and vulnerabilitiesvulnerabilityIndicates a security vulnerabilityIndicates a security vulnerabilityStatus: Open.#11 In timothywarner-org/github-security-testbed;[Security] NodeGoat: Helmet security middleware disabled
medium-priorityMedium priority issuesMedium priority issuessecuritySecurity-related issues and vulnerabilitiesSecurity-related issues and vulnerabilitiesvulnerabilityIndicates a security vulnerabilityIndicates a security vulnerabilityStatus: Open.#10 In timothywarner-org/github-security-testbed;[Security] NodeGoat: Session cookies lack httpOnly and secure flags
high-priorityHigh priority issuesHigh priority issuessecuritySecurity-related issues and vulnerabilitiesSecurity-related issues and vulnerabilitiesvulnerabilityIndicates a security vulnerabilityIndicates a security vulnerabilityStatus: Open.#9 In timothywarner-org/github-security-testbed;