Commit 15bb7f8
File tree
87 files changed
+336
-294
lines changed- submissions/description
- automotive_security_misconfiguration/infotainment_radio_head_unit/default_credentials
- broken_access_control
- exposed_sensitive_android_intent
- exposed_sensitive_ios_url_scheme
- idor
- modify_sensitive_information_iterable_object_identifiers
- modify_view_sensitive_information_guid
- modify_view_sensitive_information_iterable_object_identifiers
- view_non_sensitive_information
- view_sensitive_information_iterable_object_identifiers
- privilege_escalation
- broken_authentication_and_session_management
- authentication_bypass
- concurrent_logins
- failure_to_invalidate_session
- all_sessions
- on_email_change
- session_fixation/remote_attack_vector
- cross_site_request_forgery_csrf/action_specific
- cross_site_scripting_xss
- cookie_based
- flash_based
- reflected/self
- stored
- non_admin_to_anyone
- self
- external_behavior
- browser_feature
- autocomplete_enabled
- autocorrect_enabled
- plaintext_password_field
- save_password
- user_password_persisted_in_memory
- insecure_data_storage
- non_sensitive_application_data_stored_unencrypted
- sensitive_application_data_stored_unencrypted
- on_external_storage
- on_internal_storage
- insecure_os_firmware/poorly_configured_operating_system_security
- insufficient_security_configurability
- lack_of_notification_email
- no_password_policy
- password_policy_bypass
- verification_of_contact_method_not_required
- weak_password_policy
- weak_password_reset_implementation
- token_is_not_invalidated_after_email_change
- token_is_not_invalidated_after_login
- token_is_not_invalidated_after_new_token_is_requested
- token_is_not_invalidated_after_password_change
- token_is_not_invalidated_after_use
- weak_two_fa_implementation
- missing_failsafe
- old_two_fa_code_is_not_invalidated_after_new_code_is_generated
- two_fa_code_is_not_updated_after_new_code_is_requested
- two_fa_secret_cannot_be_rotated
- two_fa_secret_remains_obtainable_after_two_fa_is_enabled
- sensitive_data_exposure
- mixed_content
- password_reset_token
- sensitive_token_in_url/user_facing
- token_leakage_via_referer
- over_http
- password_reset_token
- trusted_third_party
- untrusted_third_party
- weak_password_reset_implementation
- password_reset_token_sent_over_http
- server_security_misconfiguration
- exposed_admin_portal
- to_internet
- misconfigured_dns
- no_rate_limiting_on_form
- change_password
- email_triggering
- login
- registration
- sms_triggering
- oauth_misconfiguration
- account_squatting
- account_takeover
- insecure_redirect_uri
- missing_state_parameter
- potentially_unsafe_http_method_enabled
- options
- trace
- server_side_request_forgery_ssrf
- external_dns_query_only
- external_low_impact
- internal_high_impact
- internal_scan_and_or_medium_impact
- using_default_credentials
- using_components_with_known_vulnerabilities
- captcha_bypass
- ocr_optical_character_recognition
Some content is hidden
Large Commits have some content hidden by default. Use the searchbox below for content that may be hidden.
87 files changed
+336
-294
lines changedLines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
8 | 8 | | |
9 | 9 | | |
10 | 10 | | |
11 | | - | |
| 11 | + | |
12 | 12 | | |
13 | 13 | | |
14 | 14 | | |
| |||
Lines changed: 4 additions & 4 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
9 | 9 | | |
10 | 10 | | |
11 | 11 | | |
12 | | - | |
| 12 | + | |
13 | 13 | | |
14 | 14 | | |
15 | 15 | | |
| |||
20 | 20 | | |
21 | 21 | | |
22 | 22 | | |
23 | | - | |
24 | | - | |
25 | | - | |
| 23 | + | |
| 24 | + | |
| 25 | + | |
Lines changed: 4 additions & 4 deletions
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
10 | 10 | | |
11 | 11 | | |
12 | 12 | | |
13 | | - | |
| 13 | + | |
14 | 14 | | |
15 | 15 | | |
16 | 16 | | |
| |||
21 | 21 | | |
22 | 22 | | |
23 | 23 | | |
24 | | - | |
25 | | - | |
26 | | - | |
| 24 | + | |
| 25 | + | |
| 26 | + | |
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
10 | | - | |
| 10 | + | |
11 | 11 | | |
12 | 12 | | |
13 | 13 | | |
| |||
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
10 | | - | |
| 10 | + | |
11 | 11 | | |
12 | 12 | | |
13 | 13 | | |
| |||
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
10 | | - | |
| 10 | + | |
11 | 11 | | |
12 | 12 | | |
13 | 13 | | |
| |||
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
10 | | - | |
| 10 | + | |
11 | 11 | | |
12 | 12 | | |
13 | 13 | | |
| |||
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
10 | | - | |
| 10 | + | |
11 | 11 | | |
12 | 12 | | |
13 | 13 | | |
| |||
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
7 | 7 | | |
8 | 8 | | |
9 | 9 | | |
10 | | - | |
| 10 | + | |
11 | 11 | | |
12 | 12 | | |
13 | 13 | | |
| |||
Lines changed: 1 addition & 1 deletion
| Original file line number | Diff line number | Diff line change | |
|---|---|---|---|
| |||
8 | 8 | | |
9 | 9 | | |
10 | 10 | | |
11 | | - | |
| 11 | + | |
12 | 12 | | |
13 | 13 | | |
14 | 14 | | |
| |||
0 commit comments