Skip to content

chore: add checker to detect 'none' algo in JWT token encode/decode method#122

Merged
sourya-deepsource merged 2 commits intoDeepSourceCorp:masterfrom
MashyBasker:checker/jwt-python-none-alg
Mar 10, 2025
Merged

chore: add checker to detect 'none' algo in JWT token encode/decode method#122
sourya-deepsource merged 2 commits intoDeepSourceCorp:masterfrom
MashyBasker:checker/jwt-python-none-alg

Conversation

@MashyBasker
Copy link
Contributor

Test logs

Testing built-in rules...
./bin/globstar test -d checkers/
Running test case: dangerous_eval.yml
Running test case: avoid-marksafe.yml
Running test case: context-autoescape-off.yml
Running test case: filter-issafe.yml
Running test case: format-html-param.yml
Running test case: jwt-python-none-alg.yml
Running test case: safe-string-extend.yml
All tests passed%                  

…ethod

Signed-off-by: Maharshi Basu <basumaharshi10@gmail.com>
@vercel
Copy link

vercel bot commented Feb 25, 2025

The latest updates on your projects. Learn more about Vercel for Git ↗︎

1 Skipped Deployment
Name Status Preview Comments Updated (UTC)
globstar ⬜️ Ignored (Inspect) Visit Preview Feb 26, 2025 4:48am

@sanket-deepsource
Copy link
Contributor

@MashyBasker Can you add a reference to the source of this vulnerability?

Signed-off-by: Maharshi Basu <basumaharshi10@gmail.com>
@MashyBasker
Copy link
Contributor Author

@sanket-deepsource Addressed the requested changes. Please let me know if any additional changes are required.

@sourya-deepsource sourya-deepsource merged commit 2c08eec into DeepSourceCorp:master Mar 10, 2025
3 checks passed
Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

3 participants