Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
47 |
test/fielded_text_parser.test.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
95 |
test/throttle.test.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1970 |
test/server.test.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1978 |
test/server.test.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
2016 |
test/server.test.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
37 |
test/upgrade.test.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
407 |
test/upgrade.test.js |
Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
204 |
test/plugins.test.js |
Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
265 |
test/plugins.test.js |
Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
509 |
test/plugins.test.js |
Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
564 |
test/plugins.test.js |
Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
636 |
test/plugins.test.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
924 |
test/plugins.test.js |
Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
977 |
test/plugins.test.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1058 |
test/plugins.test.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1103 |
test/plugins.test.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1109 |
test/plugins.test.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
1236 |
test/plugins.test.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
1265 |
test/plugins.test.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
1295 |
test/plugins.test.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
1321 |
test/plugins.test.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
1322 |
test/plugins.test.js |
Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
378 |
examples/todoapp/lib/server.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
14 |
examples/dtrace/hello.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
131 |
examples/dtrace/demo.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
93 |
lib/plugins/throttle.js |
Weak Hash used - MD5 |
MD5 is a a weak hash which is known to have collision. Use a strong hashing function. |
62 |
lib/plugins/full_response.js |
Username Hardcoded |
A hardcoded username in plain text was identified. Store it properly in a config file. |
107 |
lib/plugins/authorization.js |
Weak Hash used - MD5 |
MD5 is a a weak hash which is known to have collision. Use a strong hashing function. |
85 |
lib/plugins/body_reader.js |