Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
89 |
private/node_scripts/auto-translate.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
221 |
packages/rocketchat-otr/client/rocketchat.otr.room.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
36 |
packages/rocketchat-otr/client/views/otrFlexTab.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
48 |
packages/rocketchat-otr/client/views/otrFlexTab.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
6 |
packages/rocketchat-ui/lib/constallation.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
9 |
packages/rocketchat-ui/lib/particles.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
2 |
packages/rocketchat-ui/lib/jquery.swipebox.min.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
82 |
packages/rocketchat-emojione/lib/EmojiPicker.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
69 |
packages/rocketchat-videobridge/client/views/videoFlexTab.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
75 |
packages/rocketchat-videobridge/client/views/videoFlexTab.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
369 |
packages/rocketchat-videobridge/client/public/external_api.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
278 |
packages/rocketchat-lib/client/lib/cachedCollection.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
7 |
packages/rocketchat-lib/client/lib/localforage.min.js |
Username Hardcoded |
A hardcoded username in plain text was identified. Store it properly in a config file. |
107 |
packages/rocketchat-lib/server/lib/sendNotificationsOnMessage.js |
Username Hardcoded |
A hardcoded username in plain text was identified. Store it properly in a config file. |
110 |
packages/rocketchat-lib/server/lib/sendNotificationsOnMessage.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
25 |
packages/rocketchat-tooltip/rocketchat-tooltip.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
218 |
packages/rocketchat-crowd/server/crowd.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
219 |
packages/rocketchat-crowd/server/crowd.js |
Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
339 |
packages/meteor-accounts-saml/saml_server.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
14 |
packages/meteor-accounts-saml/saml_client.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
55 |
packages/meteor-accounts-saml/saml_client.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
59 |
packages/rocketchat-cas/cas_client.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
30 |
packages/rocketchat-cas/cas_rocketchat.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
185 |
packages/autoupdate/autoupdate_cordova.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
313 |
packages/autoupdate/autoupdate_cordova.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
102 |
packages/autoupdate/autoupdate_client.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
121 |
packages/autoupdate/autoupdate_client.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
68 |
packages/meteor-timesync/timesync-client.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
117 |
packages/meteor-timesync/timesync-client.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
144 |
packages/meteor-timesync/timesync-client.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
155 |
packages/meteor-timesync/timesync-client.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
101 |
packages/meteor-timesync/tests/client.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
138 |
packages/rocketchat-ldap/server/ldap.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
144 |
packages/rocketchat-ldap/server/sync.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
200 |
packages/rocketchat-ldap/server/sync.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
201 |
packages/rocketchat-ldap/server/sync.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
30 |
packages/rocketchat-file-upload/client/lib/FileUploadAmazonS3.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
28 |
packages/rocketchat-file-upload/client/lib/FileUploadGridFS.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
37 |
packages/rocketchat-file-upload/client/lib/FileUploadFileSystem.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
686 |
packages/rocketchat-theme/client/minicolors/jquery.minicolors.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1022 |
packages/rocketchat-theme/client/minicolors/jquery.minicolors.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
456 |
packages/rocketchat-favico/favico.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
810 |
packages/rocketchat-favico/favico.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
169 |
packages/rocketchat-push-notifications/client/views/pushNotificationsFlexTab.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
32 |
packages/rocketchat-ui-admin/admin/rooms/channelSettingsDefault.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
259 |
packages/rocketchat-livechat/client/views/app/livechatAppearance.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
83 |
packages/rocketchat-livechat/assets/rocket-livechat.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
23 |
packages/rocketchat-livechat/server/forwardUnclosedLivechats.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
312 |
packages/rocketchat-livechat/server/lib/Livechat.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
4 |
packages/rocketchat-livechat/server/hooks/externalMessage.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
101 |
packages/rocketchat-livechat/app/client/views/messages.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
57 |
packages/rocketchat-livechat/app/client/lib/triggers.js |