Skip to content

Conversation

@BryanChasko
Copy link
Contributor

note- I'm new to this UI and I skipped my PR, which I'm pretty sure kicks me out of all github Universe events automagically. meanwhile, back at the ranch ^.^
Triaging a result in a PR
The default workflow configuration enables code scanning on PRs. Follow the next steps to see it in action.
Add a vulnerable snippet of code and commit it to a patch branch and create a PR.
Make the following change in frontend/src/components/AuthorizationCallback.vue:27

  • if (this.hasCode && this.hasState) {
  • eval(this.code)
  • if (this.hasCode && this.hasState) {
    Is the vulnerability detected in your PR?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment

Labels

None yet

Projects

None yet

Development

Successfully merging this pull request may close these issues.

2 participants