github / github/codeql

CodeQL maps CWE-730, which MITRE prohibits from being used for mapping

Abierto
#22,318 2 comentarios 0 reacciones 0 asignados Ver en GitHub
question
Lenguaje dominante
CodeQL
Estrellas
10.1k
Forks
2.1k
Merge medio
2 d 15 h
PR fusionados (30 d)
141

Descripción

CodeQL maps weakness CWE-730 on Code Scanning alerts. According to [MITRE](https://cwe.mitre.org/data/definitions/730.html), CWE-730 is a Category and it is marked PROHIBITED (this CWE ID must not be used to map to real-world vulnerabilities).

Also note that this CWE is not listed in [CodeQL's CWE coverage](https://codeql.github.com/codeql-query-help/full-cwe/) page in the docs.

Guía de contribución

Abrir la guía de contribución

Línea de trabajo

Start by comparing the CodeQL alert mapping for CWE-730 with MITRE's definition and prohibition notice. Then inspect the CodeQL CWE coverage documentation to determine how the mapping is represented. Done means prohibited CWE-730 is no longer mapped to alerts and the documented coverage is consistent.

Escrito por el modelo de indexación a partir del texto del issue.

Evaluación

Área
documentation, security
Tipo de issue
Error
Dificultad
3/5
Tiempo estimado
1-2 días
Estado de actividad
Tranquilo
Claridad
Bastante claro
Aptitud para principiantes
55/100

Recibe los nuevos issues en tu correo

Un resumen breve de issues de GitHub para principiantes.