aboutcode-org / aboutcode-org/vulnerablecode
Invalid skipping of data based on summaries
- 主要語言
- Python
- 星號
- 702
- 分支
- 328
- 平均合併
- 3 天 8 小時
- 30 天內合併 PR
- 3
描述
Running importers and improvers:
```
Inconsistent summary for . Existing: Improper Handling of URL Encoding (Hex Encoding)
serve node module suffers from Improper Handling of URL Encoding by permitting access to ignored files if a filename is URL encoded., provided: serve node module suffers fro
m Improper Handling of URL Encoding by permitting access to ignored files if a filename is URL encoded.
Inconsistent summary for . Existing: CVE-2013-5612 Mozilla: Character encoding cross-origin XSS attack (MFSA 2013-106), provided: Cross-site scr
ipting (XSS) vulnerability in Mozilla Firefox before 26.0 and SeaMonkey before 2.23 makes it easier for remote attackers to inject arbitrary web script or HTML by leveraging
a Same Origin Policy violation triggered by lack of a charset parameter in a Content-Type HTTP header.
Inconsistent summary for . Existing: , provided: Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to p
erform out of bounds memory access via a crafted HTML page.
Inconsistent summary for . Existing: , provided: Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to p
erform out of bounds memory access via a crafted HTML page.
Inconsistent summary for . Existing: , provided: Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to p
erform out of bounds memory access via a crafted HTML page.
Inconsistent summary for . Existing: , provided: Uninitialized use in Media in Google Chrome prior to 92.0.4515.107 allowed a remote attacker to p
erform out of bounds memory access via a crafted HTML page.
Inconsistent summary for . Existing: Missing Authentication for Critical Function
```
貢獻指南
這個儲存庫沒有索引到貢獻指南
評估
這個 Issue 還沒有評估資料。