getsentry / getsentry/sentry-javascript
New Semgrep Finding for getsentry/javascript-debug-ids
未关闭
Bug
javascript
Security
Supply-Chain-Vuln
- 主要语言
- TypeScript
- 星标
- 8.7k
- 派生
- 1.8k
- 平均合并
- 1 天 17 小时
- 30 天内合并 PR
- 523
描述
Repo: `getsentry/javascript-debug-ids`
Finding Confidence: Conditionally Reachable
Finding Severity: High
---
To reduce risk of accidental information disclosure, we are intentionally not exposing full vulnerability details here
Please see the parent ticket for more details. Semgrep Console: [https://semgrep.dev/orgs/sentry/supply-chain/findings/965341898]()
贡献指南
调研方向
Start with the parent ticket and Semgrep Console finding 965341898; this issue intentionally omits the vulnerability details. Use those sources to identify the affected code and required remediation, then confirm that the finding is resolved.
由索引模型根据 Issue 内容生成。
评估
- 技术栈
- typescript
- 领域
- security
- Issue 类型
- 缺陷
- 难度
- 4/5
- 预计耗时
- 3-5 天
- 活跃度
- 活跃
- 描述清晰度
- 需要澄清
- 新手友好度
- 20/100