-
words
-
dfghgdhf
-
When selecting a CWE View or Category and viewing the associated web page, the View ID or Category ID is the very first item displayed under the title. This piece of data is probably not useful for mo…
-
Relevant CWEs:
https://cwe.mitre.org/data/definitions/94 Improper Control of Generation of Code ('Code Injection')
https://cwe.mitre.org/data/definitions/96 Improper Neutralization of Directives i…
-
Problem statement:
OSS users using OSV for vulnerability management have no standardized way to categorize vulnerabilities that they are currently or have historically been impacted by.
Research…
-
Hi everyone,
Are there any plans to address below vulnerability, our scanner detected a few vulnerabilities that have been addressed in the latest Alpine Linux version for OpenSSL. Currently we are…
-
GitHub seems to have updated CodeQL.
https://github.com/netblue30/firejail/security/code-scanning
Can someone have a look whether this are false-positives or unproblematic alerts.
@netblue30 @s…
-
```mermaid
journey
title Scores History
section 8191578a1fe795793d066ef397346347e6175f3f
message: 3: gustfernandez
vulnerability: 4: gustfernandez
```
-
MASWE supports CWE mappings already:
https://github.com/search?q=repo%3AOWASP%2Fowasp-mastg%20%22cwe%3A%22&type=code
For example, in MASWE-0041:
```yaml
mappings:
masvs-v1: [MSTG-AUTH-1]
…
-
While analyzing a firmware image, I noticed a never ending stream of these error messages regarding cwe_checker.
What is causing this and what can I do to get cwe_checker support to work?
```
…