-
Would like to implement an exhaustive prover for stability/non-interference using prsim-based state exploration and coverage, and reachability analysis. The legacy tool that inspires this is "prlint.…
-
Hi there!
I'm currently working on expanding fuzzing coverage for the pandas project, and I've come across a few observations in the pandas introspector report:
- Static reachability is at 0%, a…
-
In [1] a method is proposed to convert (exactly) an arbitrary polytope to the intersection of zonotopes.
It would be interesting to add this method. One application is to make a convenient overappr…
-
Vulnerable Library - jose4j-0.7.6.jar
The jose.4.j library is a robust and easy to use open source implementation of JSON Web Token (JWT) and the JOSE specification suite (JWS, JWE, and JWK).
I…
-
The generate option is a kind of view option. This will allow users to specify what should be generated when a generator is invoked. For example, suppose NuSMV generator is invoked the user should be …
-
Vulnerable Library - download-8.0.0.tgz
Path to dependency file: /package.json
Path to vulnerable library: /node_modules/http-cache-semantics/package.json
Found in HEAD commit: 46f9017bf07d9afe8…
-
https://oss-fuzz-introspector.storage.googleapis.com/index.html recently got a facelift, and this made some issues obvious. One is that code coverage is often a lot higher than reachability for Python…
-
We are submitting this issue to notify you of an IAM policy analysis we conducted based on an October 2021 copy of the `connorads/lockbot` repository. We recognize that your application has continued …
-
Vulnerable Library - bootstrap-3.3.7.jar
WebJar for Bootstrap
Library home page: http://webjars.org
Path to dependency file: /pom.xml
Path to vulnerable library: /home/wss-scanner/.m2/repository/org…
-
Vulnerable Library - express-4.16.4.tgz
Fast, unopinionated, minimalist web framework
Library home page: https://registry.npmjs.org/express/-/express-4.16.4.tgz
Path to dependency file: /package.jso…