aboutcode-org / aboutcode-org/vulnerablecode
Invalid skipping of data based on summaries
- 主要言語
- Python
- スター
- 702
- フォーク
- 328
- 平均マージ
- 3日 8時間
- マージ済み PR(30日)
- 3
説明
Running importers and improvers:
```
Inconsistent summary for . Existing: Improper Handling of URL Encoding (Hex Encoding)
serve node module suffers from Improper Handling of URL Encoding by permitting access to ignored files if a filename is URL encoded., provided: serve node module suffers fro
m Improper Handling of URL Encoding by permitting access to ignored files if a filename is URL encoded.
Inconsistent summary for . Existing: CVE-2013-5612 Mozilla: Character encoding cross-origin XSS attack (MFSA 2013-106), provided: Cross-site scr
ipting (XSS) vulnerability in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 makes it easier for remote attackers to inject arbitrary web script or HTML by leveraging
a Same Origin Policy violation triggered by lack of a charset parameter in a Content-Type HTTP header.
Inconsistent summary for . Existing: , provided: Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to p
erform out of bounds memory access via a crafted HTML page.
Inconsistent summary for . Existing: , provided: Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to p
erform out of bounds memory access via a crafted HTML page.
Inconsistent summary for . Existing: , provided: Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to p
erform out of bounds memory access via a crafted HTML page.
Inconsistent summary for . Existing: , provided: Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to p
erform out of bounds memory access via a crafted HTML page.
Inconsistent summary for . Existing: Missing Authentication for Critical Function
```
コントリビューションガイド
このリポジトリのコントリビューションガイドは索引されていません
評価
この issue はまだ評価されていません。