Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
207 |
gulpfile.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
216 |
gulpfile.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
3 |
client/main.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
529 |
client/main.js |
Server Side Injection(SSI) - eval() |
User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
20 |
client/iFrameScripts.js |
Server Side Injection(SSI) - eval() |
User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
49 |
client/iFrameScripts.js |
Server Side Injection(SSI) - eval() |
User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
78 |
client/plugin.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
12 |
client/sagas/local-storage-saga.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
19 |
client/sagas/local-storage-saga.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
113 |
client/commonFramework/phone-scroll-lock.js |
Server Side Injection(SSI) - eval() |
User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
26 |
client/commonFramework/run-tests-stream.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
14 |
public/js/calculator.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
21 |
public/js/calculator.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
152 |
public/js/calculator.js |
Username Hardcoded |
A hardcoded username in plain text was identified. Store it properly in a config file. |
156 |
common/models/user.js |
Username Hardcoded |
A hardcoded username in plain text was identified. Store it properly in a config file. |
25 |
server/component-passport.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
19 |
server/production-start.js |
SSRF - Server Side Request Forgery |
User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). |
2 |
server/utils/index.js |
Server Side Injection(SSI) - eval() |
User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
97 |
seed/test-challenges.js |
Username Hardcoded |
A hardcoded username in plain text was identified. Store it properly in a config file. |
116 |
seed/loopbackMigration.js |