Express BodyParser Tempfile Creation Issue |
POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. |
6 |
template/web-server/app.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
309 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - eval() |
User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
945 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1326 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1429 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1695 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1744 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1982 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
2003 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
2008 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
2633 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
2680 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
2682 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
2907 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
2922 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
3714 |
template/web-server/public/js/lib/socket.io.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1531 |
template/web-server/public/js/lib/build/build.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1536 |
template/web-server/public/js/lib/build/build.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
1543 |
template/web-server/public/js/lib/build/build.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
25 |
test/application.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
31 |
test/application.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
40 |
test/application.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
84 |
test/application.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
88 |
test/application.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
117 |
test/application.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
551 |
test/application.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
555 |
test/application.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
94 |
test/service/filterService.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
118 |
test/service/filterService.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
123 |
test/service/sessionService.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
137 |
test/service/sessionService.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
148 |
test/service/sessionService.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
167 |
test/service/sessionService.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
178 |
test/service/sessionService.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
396 |
test/service/sessionService.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
412 |
test/service/sessionService.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
431 |
test/service/sessionService.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
124 |
test/modules/console.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
11 |
test/manager/taskManager.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
23 |
test/manager/taskManager.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
30 |
test/manager/taskManager.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
42 |
test/manager/taskManager.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
50 |
test/manager/taskManager.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
65 |
test/manager/taskManager.js |
Key Hardcoded |
A hardcoded key in plain text was identified. |
74 |
test/manager/taskManager.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
44 |
test/filters/handler/serial.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
45 |
test/filters/handler/toobusy.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
43 |
test/filters/handler/timeout.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
44 |
test/filters/handler/time.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
27 |
test/filters/rpc/toobusy.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
437 |
lib/application.js |
Remote OS Command Execution |
User controlled data in 'child_process.exec()' can result in Remote OS Command Execution. |
11 |
lib/modules/console.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
49 |
lib/modules/console.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
126 |
lib/modules/console.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
164 |
lib/modules/console.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
208 |
lib/modules/console.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
51 |
lib/connectors/mqttconnector.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
54 |
lib/connectors/hybrid/switcher.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
50 |
lib/connectors/commands/heartbeat.js |
Server Side Injection(SSI) - setInterval() |
User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
19 |
lib/pushSchedulers/buffer.js |
Weak Hash used - MD5 |
MD5 is a a weak hash which is known to have collision. Use a strong hashing function. |
80 |
lib/components/dictionary.js |
Weak Hash used - MD5 |
MD5 is a a weak hash which is known to have collision. Use a strong hashing function. |
77 |
lib/components/protobuf.js |
Weak Hash used - MD5 |
MD5 is a a weak hash which is known to have collision. Use a strong hashing function. |
105 |
lib/components/protobuf.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
70 |
lib/master/master.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
101 |
lib/master/master.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
30 |
lib/filters/handler/timeout.js |
Server Side Injection(SSI) - setTimeout() |
User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). |
11 |
lib/util/countDownLatch.js |
Remote OS Command Execution |
User controlled data in 'child_process.exec()' can result in Remote OS Command Execution. |
3 |
lib/util/utils.js |