

- Mail designer 365 redirect url cause issues generator#
- Mail designer 365 redirect url cause issues android#
- Mail designer 365 redirect url cause issues code#
Unvalidated Redirect (Play Framework) (PLAY_UNVALIDATED_REDIRECT) Unvalidated Redirect (UNVALIDATED_REDIRECT) XSSRequestWrapper is a weak XSS protection (XSS_REQUEST_WRAPPER)īlowfish usage with short key (BLOWFISH_KEY_SIZE) Struts Form without input validation (STRUTS_FORM_VALIDATION) RSA with no padding is insecure (RSA_NO_PADDING) Unencrypted Server Socket (UNENCRYPTED_SERVER_SOCKET) Hazelcast symmetric encryption (HAZELCAST_SYMMETRIC_ENCRYPTION) Potential external control of configuration (EXTERNAL_CONFIG_CONTROL)īad hexadecimal concatenation (BAD_HEXA_CONVERSION) Potential CRLF Injection for logs (CRLF_INJECTION_LOGS) Potential HTTP Response Splitting (HTTP_RESPONSE_SPLITTING)
Mail designer 365 redirect url cause issues code#
Potential code injection when using GroovyShell (GROOVY_SHELL) Potential code injection when using OGNL expression (OGNL_INJECTION) Potential code injection in Seam logging call (SEAM_LOG_INJECTION) Potential code injection when using Expression Language (EL) (EL_INJECTION) Potential code injection when using Spring Expression (SPEL_INJECTION) Potential code injection when using Script Engine (SCRIPT_ENGINE_INJECTION) Potential LDAP Injection (LDAP_INJECTION)
Mail designer 365 redirect url cause issues android#
Potential Android SQL Injection (SQL_INJECTION_ANDROID) Potential SQL Injection with Vert.x Sql Client (SQL_INJECTION_VERTX) Potential Scala Anorm Injection (SCALA_SQL_INJECTION_ANORM) Potential Scala Slick Injection (SCALA_SQL_INJECTION_SLICK) Potential JDBC Injection (SQL_INJECTION_JDBC) Potential JDBC Injection (Spring JDBC) (SQL_INJECTION_SPRING_JDBC) Potential SQL/JPQL Injection (JPA) (SQL_INJECTION_JPA) Potential SQL/JDOQL Injection (JDO) (SQL_INJECTION_JDO) Potential SQL/HQL Injection (Hibernate) (SQL_INJECTION_HIBERNATE) Potential SQL Injection with Turbine (SQL_INJECTION_TURBINE) Potential injection (custom) (CUSTOM_INJECTION)

Spring CSRF unrestricted RequestMapping (SPRING_CSRF_UNRESTRICTED_REQUEST_MAPPING) Spring CSRF protection disabled (SPRING_CSRF_PROTECTION_DISABLED) Potential XPath Injection (XPATH_INJECTION)įound Struts 1 endpoint (STRUTS1_ENDPOINT)įound Struts 2 endpoint (STRUTS2_ENDPOINT) XSLT parsing vulnerable to XXE (TransformerFactory) (XXE_XSLT_TRANSFORM_FACTORY) XML parsing vulnerable to XXE (TransformerFactory) (XXE_DTD_TRANSFORM_FACTORY) XML parsing vulnerable to XXE (DocumentBuilder) (XXE_DOCUMENT) XML parsing vulnerable to XXE (XMLReader) (XXE_XMLREADER) XML parsing vulnerable to XXE (SAXParser) (XXE_SAXPARSER) XML parsing vulnerable to XXE (XPathExpression) (XXE_XPATH) XML parsing vulnerable to XXE (XMLStreamReader) (XXE_XMLSTREAMREADER) Tainted filename read (FILE_UPLOAD_FILENAME) Message digest is custom (CUSTOM_MESSAGE_DIGEST) SHA-1 is a weak hash function (WEAK_MESSAGE_DIGEST_SHA1)ĭefaultHttpClient with default constructor is not compatible with TLS 1.2 (DEFAULT_HTTP_CLIENT) MD2, MD4 and MD5 are weak hash functions (WEAK_MESSAGE_DIGEST_MD5) HostnameVerifier that accept any signed certificates (WEAK_HOSTNAME_VERIFIER)įound JAX-WS SOAP endpoint (JAXWS_ENDPOINT)įound JAX-RS REST endpoint (JAXRS_ENDPOINT) TrustManager that accept any certificates (WEAK_TRUST_MANAGER) Potential Command Injection (Scala) (SCALA_COMMAND_INJECTION)įilenameUtils not filtering null bytes (WEAK_FILENAMEUTILS) Potential Command Injection (COMMAND_INJECTION) Potential Path Traversal using Scala API (file read) (SCALA_PATH_TRAVERSAL_IN) Potential Path Traversal (file write) (PATH_TRAVERSAL_OUT) Potential Path Traversal (file read) (PATH_TRAVERSAL_IN) Potentially sensitive data in a cookie (COOKIE_USAGE) Untrusted User-Agent header (SERVLET_HEADER_USER_AGENT) Untrusted Referer header (SERVLET_HEADER_REFERER) Untrusted query string (SERVLET_QUERY_STRING) Untrusted session cookie value (SERVLET_SESSION_ID) Untrusted Hostname header (SERVLET_SERVER_NAME) Untrusted Content-Type header (SERVLET_CONTENT_TYPE) Untrusted servlet parameter (SERVLET_PARAMETER)
Mail designer 365 redirect url cause issues generator#
Predictable pseudorandom number generator (Scala) (PREDICTABLE_RANDOM_SCALA) Predictable pseudorandom number generator (PREDICTABLE_RANDOM)
