We read every piece of feedback, and take your input very seriously.
To see all available qualifiers, see our documentation.
Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.
By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.
Already on GitHub? Sign in to your account
Latest Scan: 2025-01-15 05:58pm Total Findings: 7 | New Findings: 0 | Resolved Findings: 0 Tested Project Files: 292 Detected Programming Languages: 3 (Python*, JavaScript / TypeScript*, C/C++ (Beta))
CWE-79
github_issue_links.js:6
cloud-init/doc/rtd/static/js/github_issue_links.js
Lines 1 to 6 in 5c771b5
Line 13 in 5c771b5
Line 7 in 5c771b5
Line 6 in 5c771b5
● Training
▪ Secure Code Warrior DOM Based Cross-Site Scripting Training
● Videos
▪ Secure Code Warrior DOM Based Cross-Site Scripting Video
CWE-798
DataSourceCloudStack.py:71
cloud-init/cloudinit/sources/DataSourceCloudStack.py
Line 71 in 5c771b5
▪ Secure Code Warrior Hardcoded Password/Credentials Training
▪ Secure Code Warrior Hardcoded Password/Credentials Video
● Further Reading
▪ OWASP Top Ten 2017 A3: Sensitive Data Exposure
▪ OWASP Top Ten Proactive Controls 2018 C8: Protect Data Everywhere
▪ OWASP Top Ten 2021 A02: Cryptographic Failures
CWE-117
mock-meta.py:386
cloud-init/tools/mock-meta.py
Lines 381 to 386 in 5c771b5
Line 386 in 5c771b5
▪ Secure Code Warrior Log Forging Training
▪ Secure Code Warrior Log Forging Video
▪ OWASP Log Forging
CWE-328
util.py:1877
cloud-init/.pc/revert-551f560d-cloud-config-after-snap-seeding.patch/cloudinit/util.py
Lines 1872 to 1877 in 5c771b5
Line 1877 in 5c771b5
▪ Secure Code Warrior Weak Hash Strength Training
▪ Secure Code Warrior Weak Hash Strength Video
▪ OWASP Cryptographic Storage Cheat Sheet
▪ OWASP Transport Layer Protection Cheat Sheet
▪ OWASP Password Storage Cheat Sheet
▪ OWASP Using a broken or risky cryptographic algorithm article
util.py:1887
cloud-init/cloudinit/util.py
Lines 1882 to 1887 in 5c771b5
Line 1887 in 5c771b5
cloud-init/.pc/no-nocloud-network.patch/cloudinit/util.py
mock-meta.py:356
Lines 351 to 356 in 5c771b5
Line 388 in 5c771b5
Line 349 in 5c771b5
Line 355 in 5c771b5
Line 356 in 5c771b5
The text was updated successfully, but these errors were encountered:
No branches or pull requests
Code Security Report
Scan Metadata
Latest Scan: 2025-01-15 05:58pm
Total Findings: 7 | New Findings: 0 | Resolved Findings: 0
Tested Project Files: 292
Detected Programming Languages: 3 (Python*, JavaScript / TypeScript*, C/C++ (Beta))
Finding Details
CWE-79
github_issue_links.js:6
cloud-init/doc/rtd/static/js/github_issue_links.js
Lines 1 to 6 in 5c771b5
1 Data Flow/s detected
cloud-init/doc/rtd/static/js/github_issue_links.js
Line 13 in 5c771b5
cloud-init/doc/rtd/static/js/github_issue_links.js
Line 7 in 5c771b5
cloud-init/doc/rtd/static/js/github_issue_links.js
Line 6 in 5c771b5
● Training
▪ Secure Code Warrior DOM Based Cross-Site Scripting Training
● Videos
▪ Secure Code Warrior DOM Based Cross-Site Scripting Video
CWE-798
DataSourceCloudStack.py:71
cloud-init/cloudinit/sources/DataSourceCloudStack.py
Line 71 in 5c771b5
● Training
▪ Secure Code Warrior Hardcoded Password/Credentials Training
● Videos
▪ Secure Code Warrior Hardcoded Password/Credentials Video
● Further Reading
▪ OWASP Top Ten 2017 A3: Sensitive Data Exposure
▪ OWASP Top Ten Proactive Controls 2018 C8: Protect Data Everywhere
▪ OWASP Top Ten 2021 A02: Cryptographic Failures
CWE-117
mock-meta.py:386
cloud-init/tools/mock-meta.py
Lines 381 to 386 in 5c771b5
1 Data Flow/s detected
cloud-init/tools/mock-meta.py
Line 386 in 5c771b5
● Training
▪ Secure Code Warrior Log Forging Training
● Videos
▪ Secure Code Warrior Log Forging Video
● Further Reading
▪ OWASP Log Forging
CWE-328
util.py:1877
cloud-init/.pc/revert-551f560d-cloud-config-after-snap-seeding.patch/cloudinit/util.py
Lines 1872 to 1877 in 5c771b5
1 Data Flow/s detected
cloud-init/.pc/revert-551f560d-cloud-config-after-snap-seeding.patch/cloudinit/util.py
Line 1877 in 5c771b5
● Training
▪ Secure Code Warrior Weak Hash Strength Training
● Videos
▪ Secure Code Warrior Weak Hash Strength Video
● Further Reading
▪ OWASP Cryptographic Storage Cheat Sheet
▪ OWASP Transport Layer Protection Cheat Sheet
▪ OWASP Password Storage Cheat Sheet
▪ OWASP Using a broken or risky cryptographic algorithm article
CWE-328
util.py:1887
cloud-init/cloudinit/util.py
Lines 1882 to 1887 in 5c771b5
1 Data Flow/s detected
cloud-init/cloudinit/util.py
Line 1887 in 5c771b5
● Training
▪ Secure Code Warrior Weak Hash Strength Training
● Videos
▪ Secure Code Warrior Weak Hash Strength Video
● Further Reading
▪ OWASP Cryptographic Storage Cheat Sheet
▪ OWASP Transport Layer Protection Cheat Sheet
▪ OWASP Password Storage Cheat Sheet
▪ OWASP Using a broken or risky cryptographic algorithm article
CWE-328
util.py:1877
cloud-init/.pc/no-nocloud-network.patch/cloudinit/util.py
Lines 1872 to 1877 in 5c771b5
1 Data Flow/s detected
cloud-init/.pc/no-nocloud-network.patch/cloudinit/util.py
Line 1877 in 5c771b5
● Training
▪ Secure Code Warrior Weak Hash Strength Training
● Videos
▪ Secure Code Warrior Weak Hash Strength Video
● Further Reading
▪ OWASP Cryptographic Storage Cheat Sheet
▪ OWASP Transport Layer Protection Cheat Sheet
▪ OWASP Password Storage Cheat Sheet
▪ OWASP Using a broken or risky cryptographic algorithm article
CWE-117
mock-meta.py:356
cloud-init/tools/mock-meta.py
Lines 351 to 356 in 5c771b5
1 Data Flow/s detected
cloud-init/tools/mock-meta.py
Line 388 in 5c771b5
cloud-init/tools/mock-meta.py
Line 349 in 5c771b5
cloud-init/tools/mock-meta.py
Line 355 in 5c771b5
cloud-init/tools/mock-meta.py
Line 356 in 5c771b5
● Training
▪ Secure Code Warrior Log Forging Training
● Videos
▪ Secure Code Warrior Log Forging Video
● Further Reading
▪ OWASP Log Forging
The text was updated successfully, but these errors were encountered: