Node.Security

Security Audit of Yui3

ISGroup SRL performed an automated Code Review (not a real Static Analysis, more a grep-on-steroid) of this NodeJS project in order to identify potential security vulnerabilities. We do not guarantee that all the findings are valid, and for sure there are plenty of false-positives and false-negatives (undetected issues) but it's free and your project could benefit from this security analisys. The following data is also available in JSON format!

Possible Security Issues
Issue Description Line File
Key Hardcoded A hardcoded key in plain text was identified. 6164 build/loader-pathogen-encoder/loader-pathogen-encoder.js
Key Hardcoded A hardcoded key in plain text was identified. 6173 build/loader-pathogen-encoder/loader-pathogen-encoder.js
Key Hardcoded A hardcoded key in plain text was identified. 6188 build/loader-pathogen-encoder/loader-pathogen-encoder.js
Key Hardcoded A hardcoded key in plain text was identified. 6207 build/loader-pathogen-encoder/loader-pathogen-encoder.js
Key Hardcoded A hardcoded key in plain text was identified. 6266 build/loader-pathogen-encoder/loader-pathogen-encoder.js
Key Hardcoded A hardcoded key in plain text was identified. 6211 build/loader-pathogen-encoder/loader-pathogen-encoder-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 6220 build/loader-pathogen-encoder/loader-pathogen-encoder-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 6235 build/loader-pathogen-encoder/loader-pathogen-encoder-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 6254 build/loader-pathogen-encoder/loader-pathogen-encoder-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 6313 build/loader-pathogen-encoder/loader-pathogen-encoder-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/io-upload-iframe/io-upload-iframe-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 157 build/io-upload-iframe/io-upload-iframe-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 222 build/io-upload-iframe/io-upload-iframe-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/io-upload-iframe/io-upload-iframe-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/io-upload-iframe/io-upload-iframe-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 155 build/io-upload-iframe/io-upload-iframe.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 217 build/io-upload-iframe/io-upload-iframe.js
Key Hardcoded A hardcoded key in plain text was identified. 159 build/loader-pathogen-combohandler/loader-pathogen-combohandler-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 168 build/loader-pathogen-combohandler/loader-pathogen-combohandler-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 183 build/loader-pathogen-combohandler/loader-pathogen-combohandler-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 202 build/loader-pathogen-combohandler/loader-pathogen-combohandler-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 261 build/loader-pathogen-combohandler/loader-pathogen-combohandler-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 3 build/loader-pathogen-combohandler/loader-pathogen-combohandler-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/loader-pathogen-combohandler/loader-pathogen-combohandler-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 155 build/loader-pathogen-combohandler/loader-pathogen-combohandler.js
Key Hardcoded A hardcoded key in plain text was identified. 164 build/loader-pathogen-combohandler/loader-pathogen-combohandler.js
Key Hardcoded A hardcoded key in plain text was identified. 179 build/loader-pathogen-combohandler/loader-pathogen-combohandler.js
Key Hardcoded A hardcoded key in plain text was identified. 198 build/loader-pathogen-combohandler/loader-pathogen-combohandler.js
Key Hardcoded A hardcoded key in plain text was identified. 257 build/loader-pathogen-combohandler/loader-pathogen-combohandler.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 29 build/event-base-ie/event-base-ie.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/event-base-ie/event-base-ie-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/event-base-ie/event-base-ie-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/event-base-ie/event-base-ie-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 29 build/event-base-ie/event-base-ie-debug.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 524 build/yui/yui.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 4905 build/yui/yui.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5161 build/yui/yui.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5162 build/yui/yui.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5171 build/yui/yui.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5259 build/yui/yui.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5980 build/yui/yui.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5980 build/yui/yui.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/yui/yui-coverage.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 524 build/yui/yui-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5168 build/yui/yui-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5424 build/yui/yui-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5425 build/yui/yui-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5434 build/yui/yui-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5522 build/yui/yui-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6245 build/yui/yui-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6245 build/yui/yui-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5 build/yui/yui-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/yui/yui-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 7 build/yui/yui-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 7 build/yui/yui-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 397 build/anim-base/anim-base-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 396 build/anim-base/anim-base.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/anim-base/anim-base-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/anim-base/anim-base-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/anim-base/anim-base-coverage.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/json-parse-shim/json-parse-shim-coverage.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/json-parse-shim/json-parse-shim-coverage.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 172 build/json-parse-shim/json-parse-shim.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/json-parse-shim/json-parse-shim-min.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 172 build/json-parse-shim/json-parse-shim-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5 build/yui-base/yui-base-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/yui-base/yui-base-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 7 build/yui-base/yui-base-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 7 build/yui-base/yui-base-min.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 524 build/yui-base/yui-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 4893 build/yui-base/yui-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5149 build/yui-base/yui-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5150 build/yui-base/yui-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5159 build/yui-base/yui-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5247 build/yui-base/yui-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5968 build/yui-base/yui-base.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5968 build/yui-base/yui-base.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 524 build/yui-base/yui-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5156 build/yui-base/yui-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5412 build/yui-base/yui-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5413 build/yui-base/yui-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5422 build/yui-base/yui-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5510 build/yui-base/yui-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6233 build/yui-base/yui-base-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6233 build/yui-base/yui-base-debug.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/yui-base/yui-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 175 build/io-xdr/io-xdr-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 194 build/io-xdr/io-xdr-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/io-xdr/io-xdr-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/io-xdr/io-xdr-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/io-xdr/io-xdr-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 175 build/io-xdr/io-xdr.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 194 build/io-xdr/io-xdr.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 14 build/get-nodejs/get-nodejs.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 3 build/get-nodejs/get-nodejs-coverage.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 6 build/get-nodejs/get-nodejs-coverage.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 1 build/get-nodejs/get-nodejs-min.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 14 build/get-nodejs/get-nodejs-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 3 build/event-synthetic/event-synthetic-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/event-synthetic/event-synthetic-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 249 build/event-synthetic/event-synthetic.js
Key Hardcoded A hardcoded key in plain text was identified. 249 build/event-synthetic/event-synthetic-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/router/router-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 221 build/router/router-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1368 build/router/router-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/router/router-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/router/router-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 221 build/router/router.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1362 build/router/router.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 960 build/uploader-flash/uploader-flash-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 967 build/uploader-flash/uploader-flash-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 2 build/uploader-flash/uploader-flash-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 959 build/uploader-flash/uploader-flash.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 966 build/uploader-flash/uploader-flash.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/uploader-flash/uploader-flash-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/uploader-flash/uploader-flash-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/imageloader/imageloader-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/imageloader/imageloader-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/imageloader/imageloader-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 235 build/imageloader/imageloader.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 239 build/imageloader/imageloader-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 843 build/autocomplete-base/autocomplete-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 837 build/autocomplete-base/autocomplete-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/autocomplete-base/autocomplete-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/autocomplete-base/autocomplete-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/autocomplete-base/autocomplete-base-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/event-tap/event-tap-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/event-tap/event-tap-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/event-tap/event-tap-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 72 build/event-tap/event-tap-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 71 build/event-tap/event-tap.js
Key Hardcoded A hardcoded key in plain text was identified. 29 build/content-editable/content-editable.js
Key Hardcoded A hardcoded key in plain text was identified. 3 build/content-editable/content-editable-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/content-editable/content-editable-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 29 build/content-editable/content-editable-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/node-scroll-info/node-scroll-info-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/node-scroll-info/node-scroll-info-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 566 build/node-scroll-info/node-scroll-info-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 566 build/node-scroll-info/node-scroll-info.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/node-scroll-info/node-scroll-info-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 722 build/datatable-body/datatable-body-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 722 build/datatable-body/datatable-body.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/datatable-body/datatable-body-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/datatable-body/datatable-body-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/datatable-body/datatable-body-min.js
Key Hardcoded A hardcoded key in plain text was identified. 46 build/event-focus/event-focus.js
Key Hardcoded A hardcoded key in plain text was identified. 3 build/event-focus/event-focus-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/event-focus/event-focus-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 46 build/event-focus/event-focus-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/io-base/io-base-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 450 build/io-base/io-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 513 build/io-base/io-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/io-base/io-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/io-base/io-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 450 build/io-base/io-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 513 build/io-base/io-base.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 553 build/event-base/event-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 600 build/event-base/event-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 679 build/event-base/event-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/event-base/event-base-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/event-base/event-base-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 3 build/event-base/event-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/event-base/event-base-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/event-base/event-base-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/event-base/event-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/event-base/event-base-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/event-base/event-base-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 552 build/event-base/event-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 599 build/event-base/event-base.js
Key Hardcoded A hardcoded key in plain text was identified. 678 build/event-base/event-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/yql-winjs/yql-winjs-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 27 build/yql-winjs/yql-winjs.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 27 build/yql-winjs/yql-winjs-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/yql-winjs/yql-winjs-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/yql-winjs/yql-winjs-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1450 build/test/test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1537 build/test/test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1621 build/test/test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1691 build/test/test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/test/test-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/test/test-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 2 build/test/test-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/test/test-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1450 build/test/test-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1537 build/test/test-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1621 build/test/test-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1691 build/test/test-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 2708 build/charts-base/charts-base.js
Key Hardcoded A hardcoded key in plain text was identified. 2710 build/charts-base/charts-base.js
Key Hardcoded A hardcoded key in plain text was identified. 2715 build/charts-base/charts-base.js
Key Hardcoded A hardcoded key in plain text was identified. 2717 build/charts-base/charts-base.js
Key Hardcoded A hardcoded key in plain text was identified. 4661 build/charts-base/charts-base.js
Key Hardcoded A hardcoded key in plain text was identified. 4663 build/charts-base/charts-base.js
Key Hardcoded A hardcoded key in plain text was identified. 2708 build/charts-base/charts-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 2710 build/charts-base/charts-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 2715 build/charts-base/charts-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 2717 build/charts-base/charts-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 4661 build/charts-base/charts-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 4663 build/charts-base/charts-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/charts-base/charts-base-coverage.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/yui-core/yui-core-coverage.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 524 build/yui-core/yui-core.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 524 build/yui-core/yui-core-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/align-plugin/align-plugin-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 120 build/align-plugin/align-plugin-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 120 build/align-plugin/align-plugin.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/align-plugin/align-plugin-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/align-plugin/align-plugin-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 18 build/widget-autohide/widget-autohide-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 18 build/widget-autohide/widget-autohide.js
Key Hardcoded A hardcoded key in plain text was identified. 3 build/widget-autohide/widget-autohide-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/widget-autohide/widget-autohide-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/event-custom-base/event-custom-base-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/event-custom-base/event-custom-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/event-custom-base/event-custom-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 854 build/event-custom-base/event-custom-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 857 build/event-custom-base/event-custom-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/pjax-base/pjax-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/pjax-base/pjax-base-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 312 build/pjax-base/pjax-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 312 build/pjax-base/pjax-base-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/pjax-base/pjax-base-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/yui-later/yui-later-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/yui-later/yui-later-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 58 build/yui-later/yui-later.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 58 build/yui-later/yui-later.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/yui-later/yui-later-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/yui-later/yui-later-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/yui-later/yui-later-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/yui-later/yui-later-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 58 build/yui-later/yui-later-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 58 build/yui-later/yui-later-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 260 build/transition-timer/transition-timer.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/transition-timer/transition-timer-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/transition-timer/transition-timer-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 260 build/transition-timer/transition-timer-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/transition-timer/transition-timer-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 226 build/transition/transition-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 391 build/transition/transition-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 401 build/transition/transition-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/transition/transition-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/transition/transition-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 226 build/transition/transition.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 391 build/transition/transition.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 401 build/transition/transition.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/transition/transition-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/event-valuechange/event-valuechange-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/event-valuechange/event-valuechange-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 3 build/event-valuechange/event-valuechange-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/event-valuechange/event-valuechange-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/event-valuechange/event-valuechange-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/event-valuechange/event-valuechange-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 34 build/event-valuechange/event-valuechange.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 179 build/event-valuechange/event-valuechange.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 241 build/event-valuechange/event-valuechange.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/event-valuechange/event-valuechange-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/event-valuechange/event-valuechange-min.js
Key Hardcoded A hardcoded key in plain text was identified. 38 build/event-valuechange/event-valuechange-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 185 build/event-valuechange/event-valuechange-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 250 build/event-valuechange/event-valuechange-debug.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 5 build/yui-nodejs/yui-nodejs-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/yui-nodejs/yui-nodejs-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/yui-nodejs/yui-nodejs-min.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 524 build/yui-nodejs/yui-nodejs.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 4044 build/yui-nodejs/yui-nodejs.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 4977 build/yui-nodejs/yui-nodejs.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 4977 build/yui-nodejs/yui-nodejs.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/yui-nodejs/yui-nodejs-coverage.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 524 build/yui-nodejs/yui-nodejs-debug.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 4291 build/yui-nodejs/yui-nodejs-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5235 build/yui-nodejs/yui-nodejs-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 5235 build/yui-nodejs/yui-nodejs-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/series-histogram-base/series-histogram-base-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 82 build/series-histogram-base/series-histogram-base.js
Key Hardcoded A hardcoded key in plain text was identified. 83 build/series-histogram-base/series-histogram-base.js
Key Hardcoded A hardcoded key in plain text was identified. 87 build/series-histogram-base/series-histogram-base.js
Key Hardcoded A hardcoded key in plain text was identified. 88 build/series-histogram-base/series-histogram-base.js
Key Hardcoded A hardcoded key in plain text was identified. 82 build/series-histogram-base/series-histogram-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 83 build/series-histogram-base/series-histogram-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 87 build/series-histogram-base/series-histogram-base-debug.js
Key Hardcoded A hardcoded key in plain text was identified. 88 build/series-histogram-base/series-histogram-base-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 640 build/frame/frame-debug.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 617 build/frame/frame.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 2 build/frame/frame-min.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/frame/frame-coverage.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/frame/frame-coverage.js
Server Side Injection(SSI) - new Function() User controlled data in 'new Function()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 180 build/template-micro/template-micro-debug.js
Server Side Injection(SSI) - new Function() User controlled data in 'new Function()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/template-micro/template-micro-coverage.js
Server Side Injection(SSI) - new Function() User controlled data in 'new Function()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/template-micro/template-micro-coverage.js
Server Side Injection(SSI) - new Function() User controlled data in 'new Function()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 180 build/template-micro/template-micro.js
Server Side Injection(SSI) - new Function() User controlled data in 'new Function()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/template-micro/template-micro-min.js
Key Hardcoded A hardcoded key in plain text was identified. 6 build/node-focusmanager/node-focusmanager-coverage.js
Key Hardcoded A hardcoded key in plain text was identified. 48 build/node-focusmanager/node-focusmanager.js
Key Hardcoded A hardcoded key in plain text was identified. 48 build/node-focusmanager/node-focusmanager-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 187 build/timers/timers-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 242 build/timers/timers-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 249 build/timers/timers-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 187 build/timers/timers.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 242 build/timers/timers.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 249 build/timers/timers.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/timers/timers-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/timers/timers-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/timers/timers-coverage.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 3 build/yql-nodejs/yql-nodejs-coverage.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 6 build/yql-nodejs/yql-nodejs-coverage.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 1 build/yql-nodejs/yql-nodejs-min.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 10 build/yql-nodejs/yql-nodejs.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 10 build/yql-nodejs/yql-nodejs-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 3 build/get/get-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 6 build/get/get-coverage.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 876 build/get/get.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1132 build/get/get.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1133 build/get/get.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1142 build/get/get.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1230 build/get/get.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 build/get/get-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 2 build/get/get-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 892 build/get/get-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1148 build/get/get-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1149 build/get/get-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1158 build/get/get-debug.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1246 build/get/get-debug.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 1 build/io-nodejs/io-nodejs-min.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 3 build/io-nodejs/io-nodejs-coverage.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 6 build/io-nodejs/io-nodejs-coverage.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 11 build/io-nodejs/io-nodejs.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 20 build/io-nodejs/io-nodejs.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 11 build/io-nodejs/io-nodejs-debug.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 20 build/io-nodejs/io-nodejs-debug.js
Accept Self Signed Certificates 'Setting 'NODE_TLS_REJECT_UNAUTHORIZED' to 0 will allow node server to accept self signed certificates and is not an secure behaviour. 19 src/yql/tests/unit/assets/yql-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 36 src/yql/tests/unit/assets/yql-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 25 src/yql/js/yql-winjs.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 8 src/yql/js/yql-nodejs.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 20 src/yui/docs/assets/parallel-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 16 src/yui/docs/assets/yui-multi-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 130 src/yui/tests/unit/assets/es-modules-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 147 src/yui/tests/unit/assets/es-modules-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 165 src/yui/tests/unit/assets/es-modules-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 184 src/yui/tests/unit/assets/es-modules-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 203 src/yui/tests/unit/assets/es-modules-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 223 src/yui/tests/unit/assets/es-modules-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 761 src/yui/tests/unit/assets/core-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 787 src/yui/tests/unit/assets/core-tests.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 524 src/yui/js/yui.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 56 src/yui/js/yui-later.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 56 src/yui/js/yui-later.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 11 src/anim/docs/assets/basic-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 18 src/anim/docs/assets/basic-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 30 src/anim/docs/assets/alt-iterations-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 40 src/anim/docs/assets/alt-iterations-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 54 src/anim/docs/assets/alt-iterations-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 64 src/anim/docs/assets/alt-iterations-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 11 src/anim/docs/assets/easing-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 18 src/anim/docs/assets/easing-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 11 src/anim/docs/assets/curve-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 23 src/anim/docs/assets/curve-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 12 src/anim/docs/assets/reverse-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 19 src/anim/docs/assets/reverse-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 32 src/anim/docs/assets/reverse-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 39 src/anim/docs/assets/reverse-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 14 src/anim/docs/assets/end-event-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 22 src/anim/docs/assets/end-event-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 14 src/anim/docs/assets/colors-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 24 src/anim/docs/assets/colors-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 38 src/anim/docs/assets/colors-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 48 src/anim/docs/assets/colors-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 14 src/anim/docs/assets/anim-xy-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 27 src/anim/docs/assets/anim-xy-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 395 src/anim/js/anim.js
Weak Hash used - MD5 MD5 is a a weak hash which is known to have collision. Use a strong hashing function. 13 src/loader/scripts/meta_join.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1026 src/loader/tests/unit/assets/loader-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1089 src/loader/tests/unit/assets/loader-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 157 src/loader/js/loader-pathogen-combohandler.js
Key Hardcoded A hardcoded key in plain text was identified. 166 src/loader/js/loader-pathogen-combohandler.js
Key Hardcoded A hardcoded key in plain text was identified. 181 src/loader/js/loader-pathogen-combohandler.js
Key Hardcoded A hardcoded key in plain text was identified. 200 src/loader/js/loader-pathogen-combohandler.js
Key Hardcoded A hardcoded key in plain text was identified. 259 src/loader/js/loader-pathogen-combohandler.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 19 src/overlay/docs/assets/overlay-anim-plugin-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 32 src/overlay/docs/assets/overlay-anim-plugin-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 61 src/overlay/docs/assets/overlay-anim-plugin-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 74 src/overlay/docs/assets/overlay-anim-plugin-tests.js
Server Side Injection(SSI) - new Function() User controlled data in 'new Function()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 47 src/querystring/tests/unit/assets/querystring-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1527 src/common/docs/assets/vendor/prettify/prettify.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1 src/common/docs/assets/vendor/prettify/prettify-min.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 803 src/common/vendor/benchmarkjs/benchmark.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1203 src/common/vendor/benchmarkjs/benchmark.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 409 src/uploader/js/uploader-flash.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 416 src/uploader/js/uploader-flash.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/column-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedspline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalarea-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 87 src/charts/tests/unit/assets/series-base-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/column-legendwrapitems-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/bar-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/bar-legend-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/combospline-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedverticalarea-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/area-legendwrapitems-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalline-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalspline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 17 src/charts/tests/unit/assets/combo-tooltip-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/combo-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedcombo-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/area-legend-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedbar-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/charts-legend-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalcombo-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 241 src/charts/tests/unit/assets/series-pie-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 326 src/charts/tests/unit/assets/series-pie-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 443 src/charts/tests/unit/assets/series-pie-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 450 src/charts/tests/unit/assets/series-pie-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 836 src/charts/tests/unit/assets/series-pie-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 845 src/charts/tests/unit/assets/series-pie-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/areaspline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalcombospline-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalcomboshowareafill-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/combospline-legendwrapitems-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/spline-legend-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/column-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 262 src/charts/tests/unit/assets/series-cartesian-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 263 src/charts/tests/unit/assets/series-cartesian-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedarea-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalareaspline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/line-legendwrapitems-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/areaspline-legendwrapitems-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/column-legend-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/bar-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/area-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedverticalspline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedverticalcombo-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/line-legend-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedareaspline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/spline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/spline-legendwrapitems-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/bar-legendwrapitems-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedcolumn-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalcombosplineshowareafill-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalarea-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedcombospline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalcombo-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/line-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/combosplineshowareafill-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 91 src/charts/tests/unit/assets/series-histogram-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 92 src/charts/tests/unit/assets/series-histogram-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 96 src/charts/tests/unit/assets/series-histogram-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 97 src/charts/tests/unit/assets/series-histogram-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/verticalcombospline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedverticalareaspline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/area-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/combospline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/pie-legend-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/areaspline-legend-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/combospline-legend-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/combo-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/stackedverticalcombospline-gridlines-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 14 src/charts/tests/unit/assets/comboshowareafill-globalstyles-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 12 src/charts/tests/unit/assets/combo-legendwrapitems-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 308 src/charts/js/CartesianChart.js
Key Hardcoded A hardcoded key in plain text was identified. 310 src/charts/js/CartesianChart.js
Key Hardcoded A hardcoded key in plain text was identified. 315 src/charts/js/CartesianChart.js
Key Hardcoded A hardcoded key in plain text was identified. 317 src/charts/js/CartesianChart.js
Key Hardcoded A hardcoded key in plain text was identified. 31 src/charts/js/PieChart.js
Key Hardcoded A hardcoded key in plain text was identified. 33 src/charts/js/PieChart.js
Key Hardcoded A hardcoded key in plain text was identified. 80 src/charts/js/Histogram.js
Key Hardcoded A hardcoded key in plain text was identified. 81 src/charts/js/Histogram.js
Key Hardcoded A hardcoded key in plain text was identified. 85 src/charts/js/Histogram.js
Key Hardcoded A hardcoded key in plain text was identified. 86 src/charts/js/Histogram.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 17 src/imageloader/docs/assets/basic-features-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 39 src/imageloader/docs/assets/basic-features-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 69 src/imageloader/docs/assets/imageloader-class-names-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 33 src/imageloader/docs/assets/below-fold-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 237 src/imageloader/js/imageloader.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 17 src/parallel/tests/unit/assets/parallel-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 36 src/parallel/tests/unit/assets/parallel-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 57 src/parallel/tests/unit/assets/parallel-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 80 src/parallel/tests/unit/assets/parallel-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 108 src/parallel/tests/unit/assets/parallel-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 177 src/parallel/tests/unit/assets/parallel-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 180 src/parallel/tests/unit/assets/parallel-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 183 src/parallel/tests/unit/assets/parallel-tests.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 58 src/template/tests/unit/assets/template-test.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 243 src/template/tests/unit/assets/template-test.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 248 src/template/tests/unit/assets/template-test.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 328 src/template/tests/unit/assets/template-test.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 333 src/template/tests/unit/assets/template-test.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 351 src/template/tests/unit/assets/template-test.js
Server Side Injection(SSI) - new Function() User controlled data in 'new Function()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 178 src/template/js/template-micro.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 665 src/editor/tests/unit/assets/editor-content-editable.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 940 src/editor/tests/unit/assets/editor-content-editable.js
Key Hardcoded A hardcoded key in plain text was identified. 27 src/editor/js/content-editable.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 638 src/editor/js/frame.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 468 src/event-custom/js/event-custom.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 18 src/datasource/docs/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 26 src/datasource/docs/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 41 src/datasource/docs/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 49 src/datasource/docs/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 13 src/datasource/tests/unit/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 23 src/datasource/tests/unit/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 52 src/datasource/tests/unit/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 59 src/datasource/tests/unit/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 66 src/datasource/tests/unit/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 98 src/datasource/tests/unit/assets/datasource-polling-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 90 src/console/docs/assets/console-basic-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 20 src/async-queue/docs/assets/queue-app-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 265 src/async-queue/tests/unit/assets/async-queue-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 287 src/async-queue/tests/unit/assets/async-queue-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 328 src/async-queue/tests/unit/assets/async-queue-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 394 src/async-queue/tests/unit/assets/async-queue-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 467 src/async-queue/tests/unit/assets/async-queue-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 821 src/async-queue/tests/unit/assets/async-queue-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 484 src/node-scroll-info/tests/unit/assets/node-scroll-info-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 532 src/node-scroll-info/tests/unit/assets/node-scroll-info-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 552 src/node-scroll-info/tests/unit/assets/node-scroll-info-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 600 src/node-scroll-info/tests/unit/assets/node-scroll-info-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 620 src/node-scroll-info/tests/unit/assets/node-scroll-info-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 668 src/node-scroll-info/tests/unit/assets/node-scroll-info-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 688 src/node-scroll-info/tests/unit/assets/node-scroll-info-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 736 src/node-scroll-info/tests/unit/assets/node-scroll-info-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 756 src/node-scroll-info/tests/unit/assets/node-scroll-info-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 564 src/node-scroll-info/js/node-scroll-info.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 11 src/datatable/docs/assets/datatable-dsget-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 11 src/datatable/docs/assets/datatable-dsio-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 65 src/datatable/tests/unit/assets/datatable-highlight-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 96 src/datatable/tests/unit/assets/datatable-highlight-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 113 src/datatable/tests/unit/assets/datatable-highlight-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 139 src/datatable/tests/unit/assets/datatable-highlight-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 156 src/datatable/tests/unit/assets/datatable-highlight-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 183 src/datatable/tests/unit/assets/datatable-highlight-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 200 src/datatable/tests/unit/assets/datatable-highlight-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 238 src/datatable/tests/unit/assets/datatable-highlight-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 720 src/datatable/js/body.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 4 src/test/docs/assets/test-async-test-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 4 src/test/docs/assets/test-async-event-tests-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 865 src/test/tests/unit/assets/mock-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 93 src/test/tests/unit/assets/general-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 104 src/test/tests/unit/assets/general-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 121 src/test/tests/unit/assets/general-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 144 src/test/tests/unit/assets/general-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 154 src/test/tests/unit/assets/general-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 280 src/test/tests/unit/assets/general-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 291 src/test/tests/unit/assets/general-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 554 src/test/js/TestRunner.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 641 src/test/js/TestRunner.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 725 src/test/js/TestRunner.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 795 src/test/js/TestRunner.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 39 src/node/docs/assets/ducks-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 47 src/node/docs/assets/ducks-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 59 src/node/docs/assets/ducks-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 67 src/node/docs/assets/ducks-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 118 src/node/js/align-plugin.js
Key Hardcoded A hardcoded key in plain text was identified. 47 src/autocomplete/tests/unit/assets/autocomplete-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 745 src/autocomplete/tests/unit/assets/autocomplete-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 841 src/autocomplete/js/autocomplete-base.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 31 src/handlebars/tests/unit/assets/handlebars-test.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 69 src/app/docs/app/assets/app-contributors-tests.js
Express BodyParser Tempfile Creation Issue POST Request to Express Body Parser 'bodyParser()' can create Temporary files and consume space. 73 src/app/tests/manual/todos-rest/server.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 604 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 621 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 717 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 739 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 761 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 781 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 811 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 835 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 856 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 873 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 910 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 941 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1675 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1700 src/app/tests/unit/assets/router-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 219 src/app/js/router.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1366 src/app/js/router.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 14 src/tabview/docs/assets/tabview-yql-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 21 src/promise/docs/assets/plugin-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 44 src/promise/docs/assets/plugin-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 53 src/promise/docs/assets/plugin-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 81 src/promise/docs/assets/plugin-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 86 src/promise/docs/assets/plugin-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 109 src/promise/docs/assets/plugin-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 127 src/promise/docs/assets/github-api-mock.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 49 src/promise/tests/unit/assets/tests-promise-utils.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 57 src/promise/tests/unit/assets/tests-promise-utils.js
Key Hardcoded A hardcoded key in plain text was identified. 16 src/widget-autohide/js/Widget-Autohide.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 38 src/jsonp/tests/unit/assets/jsonp-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 38 src/jsonp/tests/unit/assets/jsonp-url-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 11 src/transition/docs/assets/transition-usage-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 18 src/transition/docs/assets/transition-usage-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 12 src/transition/docs/assets/transition-basic-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 21 src/transition/docs/assets/transition-basic-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 11 src/transition/docs/assets/transition-view-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 18 src/transition/docs/assets/transition-view-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 29 src/transition/docs/assets/transition-view-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 36 src/transition/docs/assets/transition-view-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 258 src/transition/js/transition-timer.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 224 src/transition/js/transition-native.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 389 src/transition/js/transition-native.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 399 src/transition/js/transition-native.js
Server Side Injection(SSI) - eval() User controlled data in eval() can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 170 src/json/js/parse-shim.js
Key Hardcoded A hardcoded key in plain text was identified. 36 src/event-valuechange/js/event-valuechange.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 183 src/event-valuechange/js/event-valuechange.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 248 src/event-valuechange/js/event-valuechange.js
Key Hardcoded A hardcoded key in plain text was identified. 46 src/node-focusmanager/js/node-focusmanager.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 54 src/event/docs/assets/synth-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 67 src/event/docs/assets/synth-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 74 src/event/docs/assets/synth-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 85 src/event/docs/assets/synth-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 92 src/event/docs/assets/synth-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 114 src/event/docs/assets/synth-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 127 src/event/docs/assets/synth-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 136 src/event/docs/assets/synth-example-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 26 src/event/tests/manual/test-event-outside.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 2854 src/event/tests/unit/assets/event-synthetic-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 2858 src/event/tests/unit/assets/event-synthetic-tests.js
Key Hardcoded A hardcoded key in plain text was identified. 5 src/event/tests/unit/assets/event-resize-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 11 src/event/tests/unit/assets/event-resize-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 344 src/event/tests/unit/assets/event-tap-unit-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 363 src/event/tests/unit/assets/event-tap-unit-tests.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 186 src/event/js/event-dom.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 233 src/event/js/event-dom.js
Key Hardcoded A hardcoded key in plain text was identified. 312 src/event/js/event-dom.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 29 src/event/js/event-ready-base-ie.js
Key Hardcoded A hardcoded key in plain text was identified. 247 src/event/js/synthetic.js
Key Hardcoded A hardcoded key in plain text was identified. 44 src/event/js/focusblur.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 70 src/event/js/tap.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 22 src/io/docs/assets/get-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 41 src/io/docs/assets/get-tests.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 173 src/io/js/io-xdr.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 192 src/io/js/io-xdr.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 155 src/io/js/io-upload-iframe.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 220 src/io/js/io-upload-iframe.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 9 src/io/js/io-nodejs.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 18 src/io/js/io-nodejs.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 448 src/io/js/io-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 511 src/io/js/io-base.js
Key Hardcoded A hardcoded key in plain text was identified. 6 src/dd/docs/assets/yql-api-mock.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 63 src/timers/js/asap.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 118 src/timers/js/asap.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 125 src/timers/js/asap.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 310 src/pjax/js/pjax-base.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1759 src/get/tests/unit/assets/get-test.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1765 src/get/tests/unit/assets/get-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1937 src/get/tests/unit/assets/get-test.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1943 src/get/tests/unit/assets/get-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 2115 src/get/tests/unit/assets/get-test.js
Server Side Injection(SSI) - setInterval() User controlled data in 'setInterval()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 2121 src/get/tests/unit/assets/get-test.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 890 src/get/js/get.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1146 src/get/js/get.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1147 src/get/js/get.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1156 src/get/js/get.js
Server Side Injection(SSI) - setTimeout() User controlled data in 'setTimeout()' can result in Server Side Injection (SSI) or Remote Code Execution (RCE). 1244 src/get/js/get.js
SSRF - Server Side Request Forgery User controlled data in 'request()'' can result in Server Side Request Forgery (SSRF). 12 src/get/js/get-nodejs.js
Missing Security Features
Issue Description
Missing Security Header - X-Frame-Options (XFO) X-Frame-Options (XFO) header provides protection against Clickjacking attacks.
Missing Security Header - Content-Security-Policy (CSP) Content Security Policy (CSP), a mechanism web applications can use to mitigate a broad class of content injection vulnerabilities, such as cross-site scripting (XSS). CSP Header was not found.
Missing Security Header - Strict-Transport-Security (HSTS) Strict-Transport-Security (HSTS) header enforces secure (HTTP over SSL/TLS) connections to the server.
Missing 'httpOnly' in Cookie JavaScript can access Cookies if they are not marked httpOnly.
Infromation Disclosure - X-Powered-By Remove the X-Powered-By header to prevent information gathering.
Missing Security Header - X-Content-Type-Options X-Content-Type-Options header prevents Internet Explorer and Google Chrome from MIME-sniffing a response away from the declared content-type.
Missing Security Header - X-Download-Options: noopen X-Download-Options header set to noopen prevents IE users from directly opening and executing downloads in your site's context.
Missing Security Header - X-XSS-Protection:1 X-XSS-Protection header set to 1 enables the Cross-site scripting (XSS) filter built into most recent web browsers.
Missing Security Header - Public-Key-Pins (HPKP) Public-Key-Pins (HPKP) ensures that certificate is Pinned.
Outdated Libraries
File Library Reference